| 开发者 | storetonative |
|---|---|
| 更新时间 | 2026年10月1日 07:31 |
| PHP版本: | 8.0 及以上 |
| WordPress版本: | 7.1 |
| 版权: | GPLv2 or later |
| 版权网址: | 版权信息 |
.well-known/apple-app-site-association and .well-known/assetlinks.json from your store's own domain — which is what iOS Universal Links and Android App Links require, and which nothing outside your site can do for you.apple-itunes-app meta tag so Safari's own native banner takes over on iOS.wp-login.php by its address (a hidden login URL, an IP allowlist, or server password protection), apply the same protection to /wp-json/storetonative/v1/shopper/: it is a second place your site checks passwords./wp-content/plugins/, or install it directly from the WordPress plugin directory.No. Your storefront — home, catalogue, search, product pages, cart and account — is drawn natively on the phone from your store's live data. Checkout runs on your store's own checkout page inside the app, so your payment gateways work unchanged; with native checkout switched on, shoppers fill in their details in a native form and only the payment step opens your checkout.
StoreToNative is a subscription with a 14-day free trial. Plans are Starter at $29 a month, Pro at $79 and Agency at $249. StoreToNative never takes a commission on your sales. This plugin itself is free.
To publish in the App Store or Google Play, yes: your app is published under your own Apple Developer and Google Play accounts, never ours. Android apps can also be installed straight from a download link with no Google Play account at all.
Yes. Preview your own store as an app at https://app.storetonative.com/demo, and run this plugin's store readiness checks before you connect anything.
Yes, to build and publish an app. This plugin pairs your store with a StoreToNative account — it isn't a standalone app builder. The store readiness checks work without one, and the plugin's connect screen links to a free trial.
No. Installing or activating this plugin makes zero network requests. The very first request it ever makes is the pairing request, and only after you've pasted a pairing code into the connect screen yourself. See "External services" above for exactly what that first request contains.
No. This plugin refuses to pair — and therefore never talks to the StoreToNative API at all — unless your store itself is served over https. That check happens locally, before any network request is made, so a plain-http site can't even attempt it.
During pairing, the StoreToNative platform makes one request back to your site — https://your-store/wp-json/storetonative/v1/pair-challenge — and your site has to answer it while the pairing request is still running. That fails on four kinds of setups: a security plugin, firewall or WAF that blocks anonymous requests to the WordPress REST API (allow that one route, or the StoreToNative platform's requests); a host that runs a single PHP worker, which cannot answer a second request while the first is waiting (the built-in php -S development server is the usual case — production hosts run several); an object cache that is private to each PHP process, so the worker answering the call cannot see what the pairing worker stored; and a host so slow that a fresh request takes more than ten seconds to answer. The code you typed is spent either way — generate a fresh one after fixing the cause.
The plugin shows an admin notice explaining that WooCommerce is required and does not register any of its other functionality until WooCommerce is active again.
Uninstalling removes all of this plugin's local data (pairing, settings, cache, and the WooCommerce API key it created for itself) and stops your store from syncing with your native app. It does not make any remote request — your StoreToNative console will simply notice the store has gone quiet the next time it checks in. Reconnecting later starts a fresh pairing.
This has not been tested on a multisite installation. Use on multisite at your own risk until this is verified.
Yes, compatibility is explicitly declared. The plugin does not read or write order data.
.well-known are only served when their contents are valid, and now tell browsers not to guess their type and to cache them for at most an hour.wp-login.php, so it could be used to test an administrator's password even if you had hidden or locked down your login page. A refused sign-in looks exactly like a wrong password. Customer accounts, including custom shopper roles such as wholesale customers, sign in as before.storetonative/v1/pair-challenge) and your site answers with a one-way digest computed from the code you typed. Before this, anyone with a StoreToNative account who learned — or guessed at — your store's address could attach their own app to it; now only the site itself can complete a pairing (older plugin versions, until this plugin's 1.6 release, are instead checked by proving that the WooCommerce key they created can write to the store). Nothing new is sent to StoreToNative; see "External services".pair-challenge added to the plugin's reported feature list.checkout-fields added to the plugin's reported feature list.apple-app-site-association / assetlinks.json) could keep serving the previous app's identity for up to 12 hours from cache. The cache is now cleared whenever the connection changes, so a fresh connection always serves fresh files.shopper-auth added to the plugin's reported feature list.readiness added to the plugin's reported feature list..well-known deep-link hosting for iOS Universal Links and Android App Links, a smart mobile install banner, and a periodic heartbeat that reports connection health back to your console.