
AMP Sidebar Hamburger Menu Security & Risk Analysis
wordpress.org/plugins/amp-sidebar-hamburger-menuIf you're using AMP in transitional or standard mode check the FAQ's below, or follow the instructions in the settings tab after installing.
Is AMP Sidebar Hamburger Menu Safe to Use in 2026?
Generally Safe
Score 85/100AMP Sidebar Hamburger Menu has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "amp-sidebar-hamburger-menu" v1.2.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL injection risks (all queries use prepared statements), file operations, and external HTTP requests is commendable. The high percentage of properly escaped output is also a positive indicator, reducing the risk of cross-site scripting (XSS) vulnerabilities. Furthermore, the plugin has no known historical vulnerabilities, suggesting a history of secure development.
However, there are a few areas of concern. The plugin relies entirely on capability checks for its entry points (shortcodes). While this is a form of authorization, the lack of explicit nonce checks on these shortcodes could theoretically open the door to CSRF attacks if the shortcodes perform sensitive actions. The analysis also reveals a complete absence of taint analysis, meaning that potential vulnerabilities involving unsanitized user input that could lead to critical or high-severity issues may have been missed. The lack of nonce checks, even if not immediately leading to exploitable issues in this specific version, represents a deviation from best practices for shortcodes that could potentially modify data.
In conclusion, the plugin is in good standing due to its lack of known vulnerabilities and its secure handling of common attack vectors like SQL injection. The significant percentage of escaped output and absence of dangerous functions contribute to a strong baseline. The primary weakness lies in the potential for CSRF if shortcodes handle sensitive operations without nonce protection, and the unknown risk from unsanitized user input due to the absence of taint analysis. Despite these points, the overall security is good.
Key Concerns
- No nonce checks on shortcodes
- No taint analysis performed
- Low percentage of properly escaped output (84%)
AMP Sidebar Hamburger Menu Security Vulnerabilities
AMP Sidebar Hamburger Menu Code Analysis
Output Escaping
AMP Sidebar Hamburger Menu Attack Surface
Shortcodes 2
WordPress Hooks 13
Maintenance & Trust
AMP Sidebar Hamburger Menu Maintenance & Trust
Maintenance Signals
Community Trust
AMP Sidebar Hamburger Menu Alternatives
WP Mobile Bottom Menu
mobile-bottom-menu-for-wp
Smooth Navigation for Mobile. Create an Eye-Catching Sticky Bottom Menu with Limitless Customization Options.
Clever Mega Menu for Elementor
clever-mega-menu-for-elementor
With ease of visual editing from Elementor Page Builder, Clever Mega Menu for Elementor helps you make stunning navigation menus easily without any coding knowledge. <a href="https://cleveraddon.com/clever-mega-menu-for-elementor">Documentation</a> | <a href="https://cleveraddon.com/clever-mega-menu-for-elementor">ChangeLogs</a></p>
Clever Mega Menu for Visual Composer
clever-mega-menu
Fully control over WordPress navigation menus with ease of visual editing from Visual Composer.
IntelliWidget Per Page Custom Menus and Dynamic Content
intelliwidget-per-page-featured-posts-and-menus
Display custom menus, featured posts, custom post types and other dynamic content on a per page, per post or site-wide basis.
WP Menu Custom Fields
wp-menu-custom-fields
This plugin adds custom fields on menu item's edit interface of wp-admin.
AMP Sidebar Hamburger Menu Developer Profile
3 plugins · 120 total installs
How We Detect AMP Sidebar Hamburger Menu
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/amp-sidebar-hamburger-menu/style.css/wp-content/plugins/amp-sidebar-hamburger-menu/style.css?ver=HTML / DOM Fingerprints
jzsidebar_containersidenav-btnaf_sidebarsidenav-closesidebar-parent-containernested-accordionon="tap:sidenav.open"on="tap:sidenav.close"<div class="jzsidebar_container"><svg class="sidenav-btn" on="tap:sidenav.open" role="button" tabindex="0" width="30px" height="30px" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 30.5 24.5"><line x1="1.25" y1="1.25" x2="29.25" y2="1.25"></line><line x1="1.25" y1="12.25" x2="29.25" y2="12.25"></line>