178e731b9d
Squashed commit of the following: commit 8ccd8e26127594e859b37ead9fd150f05d36d9f5 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Mon Jun 5 19:37:57 2023 -0700 Do not output payment gateway nonce to unqualified users. commit 882946bb18dee5eb7ffea48ddfbd4c14a5092c94 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Wed Jun 7 14:24:58 2023 -0700 Instead of looking for `?wc-ajax`, specifically exempt `admin-ajax.php`. This mimics the existing approach used for `admin-post.php` requests, and is stricter by default. commit 99cffd7cde1aa87176254845c732c91a446232f7 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Tue Jun 6 12:40:21 2023 -0700 Nonce verification not needed when evaluating ajax properties. commit 99157d2a18ea78c68c265609dfdd1bddadeee7b2 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Tue Jun 6 12:38:53 2023 -0700 Document `woocommerce_disable_admin_bar` hook. commit badcf8f50099dd38fa855d2aa71c8507d3f2a252 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Mon Jun 5 18:49:25 2023 -0700 Describe expectations around customer access to the dashboard. commit 127053e1c27e7da5515c6638859fa09384241624 Author: barryhughes <3594411+barryhughes@users.noreply.github.com> Date: Mon Jun 5 13:30:03 2023 -0700 'wc-ajax' requests should be filtered out of admin access logic. commit 2e8182761e050cc4371181eaa197b6d4b2867f89 Author: Vedanshu Jain <vedanshu.jain.2012@gmail.com> Date: Fri May 12 15:15:57 2023 +0530 Clean up individual escape to also do it again when it is used. |
||
---|---|---|
.github | ||
.husky | ||
bin | ||
changelog | ||
docs | ||
packages | ||
plugins | ||
tools | ||
.codecov.yml | ||
.editorconfig | ||
.eslintignore | ||
.eslintrc.js | ||
.gitattributes | ||
.gitignore | ||
.npmrc | ||
.nvmrc | ||
.prettierrc.js | ||
.stylelintrc | ||
.syncpackrc | ||
CODEOWNERS | ||
CODE_OF_CONDUCT.md | ||
DEVELOPMENT.md | ||
README.md | ||
SECURITY.md | ||
changelog.txt | ||
package.json | ||
phpcs.xml | ||
pnpm-lock.yaml | ||
pnpm-workspace.yaml | ||
renovate.json | ||
tsconfig.base.json | ||
turbo.json |
README.md
Welcome to the WooCommerce Monorepo on GitHub. Here you can find all of the plugins, packages, and tools used in the development of the core WooCommerce plugin as well as WooCommerce extensions. You can browse the source, look at open issues, contribute code, and keep tracking of ongoing development.
We recommend all developers to follow the WooCommerce development blog to stay up to date about everything happening in the project. You can also follow @DevelopWC on Twitter for the latest development updates.
Getting Started
To get up and running within the WooCommerce Monorepo, you will need to make sure that you have installed all of the prerequisites.
Prerequisites
- NVM: While you can always install Node through other means, we recommend using NVM to ensure you're aligned with the version used by our development teams. Our repository contains an
.nvmrc
file which helps ensure you are using the correct version of Node. - PNPM: Our repository utilizes PNPM to manage project dependencies and run various scripts involved in building and testing projects.
- PHP 7.2+: WooCommerce Core currently features a minimum PHP version of 7.2. It is also needed to run Composer and various project build scripts. See troubleshooting for troubleshooting problems installing PHP.
- Composer: We use Composer to manage all of the dependencies for PHP packages and plugins.
Once you've installed all of the prerequisites, you can run the following commands to get everything working.
# Ensure that you're using the correct version of Node
nvm use
# Install the PHP and Composer dependencies for all of the plugins, packages, and tools
pnpm install
# Build all of the plugins, packages, and tools in the monorepo
pnpm run build
At this point you are now ready to begin developing and testing. All of the build outputs are cached running pnpm run build
again will only build the plugins, packages, and tools that have changed since the last time you ran the command.
Check out our development guide if you would like a more comprehensive look at working in our repository.
Repository Structure
- Plugins: Our repository contains plugins that relate to or otherwise aid in the development of WooCommerce.
- WooCommerce Core: The core WooCommerce plugin is available in the plugins directory.
- Packages: Contained within the packages directory are all of the PHP and JavaScript provided for the community. Some of these are internal dependencies and are marked with an
internal-
prefix. - Tools: We also have a growing number of tools within our repository. Many of these are intended to be utilities and scripts for use in the monorepo, but, this directory may also contain external tools.
Reporting Security Issues
To disclose a security issue to our team, please submit a report via HackerOne here.
Support
This repository is not suitable for support. Please don't use our issue tracker for support requests, but for core WooCommerce issues only. Support can take place through the appropriate channels:
- If you have a problem, you may want to start with the self help guide.
- The WooCommerce.com premium support portal for customers who have purchased themes or extensions.
- Our community forum on wp.org which is available for all WooCommerce users.
- The Official WooCommerce Facebook Group.
- For customizations, you may want to check our list of WooExperts or Codeable.
NOTE: Unfortunately, we are unable to honor support requests in issues on this repository; as a result, any requests submitted in this manner will be closed.
Community
For peer to peer support, real-time announcements, and office hours, please join our slack community!
Contributing to WooCommerce
If you have a patch or have stumbled upon an issue with WooCommerce core, you can contribute this back to the code. Please read our contributor guidelines for more information on how you can do this.