Announcement Notification Bar Security & Risk Analysis

wordpress.org/plugins/announcement-notification-bar

Boost sales & engagement with a customizable Announcement Bar, Notification Banner, Sticky Header, or Scrolling Text marquee. Mobile-friendly & fast.

10 active installs v1.0.1 PHP 7.4+ WP 5.0+ Updated Jan 23, 2026
announcement-barbannernotification-barscrolling-textsticky-header
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Announcement Notification Bar Safe to Use in 2026?

Generally Safe

Score 100/100

Announcement Notification Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "announcement-notification-bar" plugin, in version 1.0.1, exhibits a strong security posture based on the provided static analysis. The absence of dangerous functions, reliance on prepared statements for all SQL queries, and 100% proper output escaping are excellent indicators of secure coding practices. Furthermore, the lack of file operations, external HTTP requests, and zero taint analysis findings suggest minimal avenues for common attack vectors. The presence of nonce checks also contributes positively to its security. However, a significant concern arises from the complete absence of capability checks on its single AJAX handler. While the static analysis indicates no unprotected entry points, the lack of capability checks means that any authenticated user, regardless of their role, could potentially interact with this handler. This creates a potential privilege escalation or unauthorized action vulnerability if the AJAX handler performs sensitive operations. The plugin's vulnerability history, being entirely clean, is a positive sign but does not negate the risks identified in the code analysis. In conclusion, the plugin demonstrates good fundamental security but has a critical oversight in its authentication/authorization for its AJAX endpoint, which warrants immediate attention.

Key Concerns

  • Missing capability checks on AJAX handler
Vulnerabilities
None known

Announcement Notification Bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Announcement Notification Bar Release Timeline

v1.0.1Current
Code Analysis
Analyzed Apr 16, 2026

Announcement Notification Bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
154 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped154 total outputs
Attack Surface

Announcement Notification Bar Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_announcement_notification_bar_dismiss_noticeannouncement-notification-bar.php:40
WordPress Hooks 10
actioninitannouncement-notification-bar.php:31
actionadmin_initannouncement-notification-bar.php:32
actionadmin_menuannouncement-notification-bar.php:33
actionwp_body_openannouncement-notification-bar.php:34
actionget_headerannouncement-notification-bar.php:35
actionwp_enqueue_scriptsannouncement-notification-bar.php:36
actionadmin_enqueue_scriptsannouncement-notification-bar.php:37
actionadmin_noticesannouncement-notification-bar.php:39
actionwp_footerannouncement-notification-bar.php:387
actionwp_footerannouncement-notification-bar.php:400
Maintenance & Trust

Announcement Notification Bar Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 23, 2026
PHP min version7.4
Downloads247

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Announcement Notification Bar Developer Profile

Mathew

5 plugins · 170 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Announcement Notification Bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/announcement-notification-bar/assets/css/frontend.css/wp-content/plugins/announcement-notification-bar/assets/js/frontend.js
Script Paths
/wp-content/plugins/announcement-notification-bar/assets/js/frontend.js
Version Parameters
announcement-notification-bar/assets/css/frontend.css?ver=announcement-notification-bar/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
announcement-notification-bar-frontend
JS Globals
announcement_notification_bar_options
FAQ

Frequently Asked Questions about Announcement Notification Bar