Select one or more tags, then press “Search Plugins”

Find Plugin with any / all of the selected criteria
Search Plugin

MONA Pay For WooCommerce Wordpress Plugin - Rating, Reviews, Demo & Download

MONA Pay For WooCommerce Preview Wordpress Plugin - Rating, Reviews, Demo & Download
No ratings yet
Free
Follow for free plugins, new theme releases and theme news

Plugin Description

MONA Pay for WooCommerce provides automatic bank-transfer confirmation using VietQR, virtual accounts, and HMAC-signed webhooks. Funds go straight to the merchant’s bank account; MONA Pay never holds funds.

This plugin relies on the MONA Pay API, an external service operated by The MONA Group. See the “External services” section below for what is sent, when, and the links to its terms of service and privacy policy.

The plugin supports two payment experiences:

  • Hosted checkout redirects the customer to pay.monapay.vn, keeps the order pending, and returns the customer to the store after payment.
  • Inline VietQR displays a per-order QR code on the order confirmation page, order page, and customer email.

Payment returns are verified with HMAC-SHA256 and then reconciled against the MONA Pay API before an order is marked paid. Incoming webhooks are authenticated from the unmodified request body, checked against a five-minute timestamp window, and deduplicated by transaction code. The plugin validates the paid amount before calling WooCommerce payment completion.

Additional features include compatibility with WooCommerce High-Performance Order Storage and the Cart and Checkout blocks, an optional sandbox checkout mode, test webhook and transaction tools, and a self-contained QR renderer that does not send QR content to a third-party image service.

Existing stores upgrading from earlier releases keep their gateway settings and inline payment-mode preference. Legacy username/password API credentials remain available as a compatibility fallback when no Client ID has been saved.

Vietnamese summary: Plugin giúp cửa hàng WooCommerce nhận chuyển khoản VietQR và tự động xác nhận đơn. Tiền đi thẳng vào tài khoản ngân hàng của người bán; MONA Pay không giữ tiền.

External services

This plugin connects to MONA Pay, a bank-transfer confirmation service operated by The MONA Group (Ho Chi Minh City, Vietnam). The service is required for the plugin to work: it issues checkout sessions and VietQR payment data, and it notifies the store when a transfer arrives. The plugin does not work without a MONA Pay merchant account.

1. MONA Pay API (https://api.monapay.vn)

What it is used for: obtaining an API access token, creating and reading hosted checkout sessions, generating VietQR payment data for an order, and running the optional test tools on the settings screen.

What data is sent and when:

  • When an administrator saves or tests the gateway settings: the API credentials (Client ID and secret, or legacy username and password) to obtain an access token; when the “send test webhook” button is used, the store’s webhook URL and HMAC configuration; when the “create sandbox transaction” button is used, the configured virtual-account number, a test amount and a test order description.
  • When a customer places an order with MONA Pay in hosted-checkout mode: the order amount, currency (VND), the merchant order code, a payment description, the return URL and cancellation URL of the store, the customer’s billing name and billing email when available, the WooCommerce order ID as metadata, and a sandbox flag when sandbox mode is enabled.
  • When a customer places an order in inline VietQR mode: the merchant order code, the order amount and the merchant-configured receiving-account details.
  • When a payment return or webhook is received: the checkout ID or transaction code is sent back to the API to confirm the payment status before the order is marked paid.

No data is sent on the storefront when the payment method is not used, and the plugin sends no analytics, advertising or tracking data.

The “Base URL” setting defaults to https://api.monapay.vn and exists only so that MONA Pay can point a merchant to a staging endpoint that MONA Pay operates; it is not intended for third-party services.

2. MONA Pay hosted checkout page (https://pay.monapay.vn)

In hosted-checkout mode the customer’s browser is redirected to this page to review the order and complete the bank transfer. The page shows the checkout session created through the API above; the plugin itself sends no additional data to it.

3. MONA Pay merchant portal (https://my.monapay.vn)

The settings screen links to this portal so administrators can create API keys. The plugin does not send any data to it.

Service provider: MONA Pay, The MONA Group.

  • Terms of service: https://monapay.vn/dieu-khoan
  • Privacy policy: https://monapay.vn/chinh-sach-bao-mat

Privacy

The plugin stores checkout IDs, tokens, URLs, status, QR data, virtual-account details, sandbox state, and processed transaction codes in private WooCommerce order metadata. API credentials, return-signature secrets, and webhook HMAC secrets are stored in the WordPress gateway settings and used only on the server. Secrets are not included in customer-facing pages or email. The plugin does not load resources from a CDN and does not include a tracker. Deleting the plugin removes its settings and cached tokens; order metadata is kept as the store’s payment record.

Screenshots

  1. Gateway settings for credentials, payment mode, webhook, and sandbox tools.

    Gateway settings for credentials, payment mode, webhook, and sandbox tools.

  2. MONA Pay VietQR at WooCommerce checkout.

    MONA Pay VietQR at WooCommerce checkout.

  3. VietQR payment instructions on the order confirmation page.

    VietQR payment instructions on the order confirmation page.

  4. WooCommerce logs for signed payment notifications.

    WooCommerce logs for signed payment notifications.


Reviews & Comments