Whop payments for WooCommerce, confirmed by webhook

WhopWoo adds Whop to your WooCommerce checkout. Customers pay by card or crypto on Whop’s secure hosted checkout, and the order is marked paid only after a signed webhook confirms the payment. You don’t recreate any products or map any plan IDs.

  • 7-day money-back guarantee
  • HPOS & Checkout Blocks
  • WordPress 6.5+ · PHP 7.4+
WooCommerce order#1042
Processing
Order total$128.40incl. tax, shipping & coupon
  1. Checkout created on WhopOne-time plan · $128.40 USD
  2. Customer paid on WhopCard · hosted checkout
  3. Webhook signature verifiedpayment.succeeded · HMAC-SHA256
  4. Amount matched order total$128.40 = $128.40
  5. Order marked paidStock reduced · emails sent
Works withWooCommerce 7.9 – 11.1WordPress 6.5 – 7.1HPOSCart & Checkout BlocksPHP 7.4 – 8.430 currencies

How it works

From installation to your first Whop payment in about 10 minutes

Three steps, no code. Your WooCommerce catalogue, prices and checkout flow stay exactly as they are.

01

Install and connect

Upload the plugin, then paste your Whop API key, company ID and product ID into WooCommerce → Settings → Payments → Whop.

02

Add one webhook

Copy the webhook URL from the settings screen into your Whop dashboard, subscribe it to payment.succeeded, payment.failed and refund.created, and paste the signing secret back.

03

Test, then go live

Place a full order in sandbox mode, including a refund. When it all checks out, untick Test mode and you are taking live Whop payments.

Why WhopWoo

Built for store owners who can’t afford a wrong order status

Most gateway problems start after the customer pays: a lost redirect, a dropped webhook, a refund counted twice. WhopWoo is built around those moments.

Never marked paid on a redirect

Customers can close the tab, and redirects can be faked. WhopWoo completes an order only after a verified payment.succeeded webhook.

Amounts are checked

If a correctly signed webhook reports a different amount from the order total, the order goes on hold instead of being marked paid.

Your catalogue stays in WooCommerce

One Whop plan per order, priced at the exact total. Variations, coupons, tax and shipping are still calculated by WooCommerce.

Refunds from the order screen

Issue full or partial refunds in WooCommerce. They are deduplicated by Whop refund ID and reconciled so nothing is counted twice.

Sandbox and live side by side

Separate credentials for each, and one checkbox to switch between them. Test orders go to Whop’s sandbox API.

Missed webhooks are recovered

A thank-you page check and a 15-minute background job find paid orders whose webhook never arrived.

Cards, crypto, or both

Offer every method Whop enables on your account, or limit checkout to cards only or crypto only.

Ready for modern WooCommerce

Supports High-Performance Order Storage and the Cart and Checkout Blocks, as well as the classic shortcode checkout.

Logs with secrets removed

Debug logs in WooCommerce → Status → Logs have API keys and secrets redacted, so they are safe to share with support.

Payment confirmation

What happens between “Pay” and “Processing”

Whop signs every webhook using the Standard Webhooks scheme. Before WhopWoo changes an order status, each event has to pass four checks.

What WhopWoo checks on every webhook
// 1. Is it really from Whop?
signed  = id + "." + timestamp + "." + raw_body
verify HMAC_SHA256(secret, signed) == webhook-signature

// 2. Have we seen it before?
skip if event_id already processed      // idempotent

// 3. Does the money match?
hold if paid_amount != order.total      // anti-tamper

// 4. Only now…
order.payment_complete(whop_payment_id)

Compare

WhopWoo vs. Whop payment links vs. custom development

You can take Whop payments on a WordPress site without a plugin. Here is what you give up if you do.

WhopWoo compared with Whop payment links and custom development
WhopWooWhop payment linksCustom development
Uses your existing WooCommerce cart and products
Charges the exact total (tax, shipping, coupons)
Order marked paid automatically
Signed webhook verification + replay protectionDepends
Refunds from the WooCommerce order screenDepends
Recovers orders if a webhook is missedRarely
Setup time~10 minutesPer productWeeks
CostFrom $5.99/moFree$1,000s

Pricing

Simple pricing. Every plan has every feature.

Pay monthly, yearly, or once. All plans include future updates, sandbox testing and email support. Secure checkout and licensing by Freemius.

Monthly

$5.99/month

Cancel any time

Yearly

$29/year

Renews yearly, cancel any time

7-day money-back guarantee. If WhopWoo doesn’t work for your store, email us within 7 days for a full refund. Refund policy

Shipped in 1.1.1

Stable, audited, tested with WooCommerce 11.1

Store IDs no longer depend on the site URL, rejected payloads are logged, and refund accounting reconciles against WooCommerce’s own totals.

Coming next

Subscriptions and an embedded checkout

Support for WooCommerce Subscriptions and an on-page popup checkout are in development. Every licence gets them as free updates.

FAQ

Questions store owners ask before installing

WhopWoo is a WordPress plugin that adds Whop as a payment method in WooCommerce. When a customer places an order, WhopWoo creates a Whop checkout for the exact order total, sends the customer to Whop to pay by card or crypto, and marks the WooCommerce order as paid only after Whop sends a signed payment.succeeded webhook.

No. WhopWoo never copies your catalogue into Whop. It creates one one-time plan per order, priced at the WooCommerce total, under a single Whop product. Products, variations, coupons, tax and shipping all stay in WooCommerce.

It never trusts the customer’s redirect back to your store. An order is completed only when a payment.succeeded webhook passes HMAC-SHA256 signature verification, hasn’t been processed before, and reports an amount that matches the order total. If the amount doesn’t match, the order is put on hold for you to review.

Yes. Full and partial refunds can be issued from the WooCommerce order screen. WhopWoo sends the refund to Whop, matches the refund.created webhook by refund ID, and reconciles it against WooCommerce’s own refunded total, so nothing is counted twice.

Two backstops take over. The thank-you page checks the payment status while the customer waits, and a background job runs every 15 minutes to match pending orders against their Whop payments. Orders that were paid get completed, even if the original webhook was lost.

WhopWoo accepts whatever payment methods Whop offers on your account at its hosted checkout, including cards and crypto where Whop supports them. A setting lets you offer both, cards only, or crypto only.

30 store currencies out of the box: USD, EUR, GBP, AUD, CAD, NZD, SGD, HKD, JPY, CHF, SEK, NOK, DKK, PLN, CZK, HUF, RON, BGN, AED, SAR, INR, MXN, BRL, ZAR, TRY, MYR, THB, PHP, IDR, KRW. Developers can extend the list with the whop_wc_supported_currencies filter. If your store currency isn’t on the list, WhopWoo hides itself at checkout rather than charging the wrong amount.

Yes. WhopWoo supports both the classic shortcode checkout and the Cart and Checkout Blocks, and it is compatible with High-Performance Order Storage (HPOS). It is tested up to WordPress 7.1 and WooCommerce 11.1.

Yes. WhopWoo keeps separate sandbox and live credentials and switches between them with one checkbox. Sandbox mode talks to Whop’s sandbox API, so you can place complete test orders, including refunds, before going live.

Not yet. Version 1.1.1 handles one-time payments through Whop’s hosted (redirect) checkout. WooCommerce Subscriptions support and an embedded popup checkout are on the roadmap, and every licence receives them as free updates.

No. WhopWoo is an independent plugin built and supported by Burhani Digital. It is not affiliated with, endorsed by, or supported by Whop, Inc. or Automattic. Your Whop account and its payment terms stay between you and Whop.

Start taking Whop payments in WooCommerce today

Install in ten minutes, test in sandbox, and go live when you are ready. Covered by a 7-day money-back guarantee.