Antikton Topbar Countdown Security & Risk Analysis

wordpress.org/plugins/antikton-topbar-countdown

A fully functional WordPress plugin that displays a customizable top bar with optional countdown timer and advanced scheduling capabilities.

0 active installs v1.1.1 PHP 7.4+ WP 5.0+ Updated Dec 19, 2025
countdownnoticenotificationscheduletopbar
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Antikton Topbar Countdown Safe to Use in 2026?

Generally Safe

Score 100/100

Antikton Topbar Countdown has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The antikton-topbar-countdown plugin v1.1.1 exhibits a generally strong security posture with a notable absence of known vulnerabilities and a robust approach to SQL query sanitization and output escaping. The plugin demonstrates good coding practices by utilizing prepared statements for all SQL queries and properly escaping the vast majority of its output. This indicates a developer who is mindful of common web security pitfalls.

However, a significant concern arises from the presence of an unprotected AJAX handler. With one AJAX handler identified and zero capability checks performed on it, this entry point represents a potential avenue for attackers to trigger unintended actions or extract information without proper authorization. The lack of nonce checks on this handler further exacerbates this risk, making it susceptible to Cross-Site Request Forgery (CSRF) attacks. While taint analysis found no immediate critical or high severity issues, the unprotected AJAX handler is a clear weakness that requires attention.

The plugin's vulnerability history is clean, with no recorded CVEs. This is a positive indicator of past security diligence. However, the current analysis highlights a critical gap in authorization for the AJAX endpoint. In conclusion, while the plugin has strengths in its database and output handling, the unprotected AJAX handler introduces a substantial risk that needs to be addressed to improve its overall security.

Key Concerns

  • Unprotected AJAX handler
  • Missing nonce check on AJAX handler
  • Low percentage of properly escaped output
Vulnerabilities
None known

Antikton Topbar Countdown Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Antikton Topbar Countdown Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
75 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped78 total outputs
Attack Surface
1 unprotected

Antikton Topbar Countdown Attack Surface

Entry Points1
Unprotected1

AJAX Handlers 1

authwp_ajax_antitoco_get_server_timeantikton-topbar-countdown.php:48
WordPress Hooks 7
actionplugins_loadedantikton-topbar-countdown.php:45
actionadmin_menuantikton-topbar-countdown.php:51
actionadmin_initantikton-topbar-countdown.php:52
actionadmin_enqueue_scriptsantikton-topbar-countdown.php:53
actionwp_enqueue_scriptsantikton-topbar-countdown.php:59
actionwp_body_openantikton-topbar-countdown.php:60
actionwp_footerantikton-topbar-countdown.php:61
Maintenance & Trust

Antikton Topbar Countdown Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 19, 2025
PHP min version7.4
Downloads132

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Antikton Topbar Countdown Developer Profile

Eduardo Pagán

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Antikton Topbar Countdown

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/antikton-topbar-countdown/assets/css/admin.css/wp-content/plugins/antikton-topbar-countdown/assets/css/frontend.css/wp-content/plugins/antikton-topbar-countdown/assets/js/admin.js/wp-content/plugins/antikton-topbar-countdown/assets/js/frontend.js
Script Paths
/wp-content/plugins/antikton-topbar-countdown/assets/js/frontend.js
Version Parameters
antikton-topbar-countdown/assets/css/admin.css?ver=antikton-topbar-countdown/assets/css/frontend.css?ver=antikton-topbar-countdown/assets/js/admin.js?ver=antikton-topbar-countdown/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
antitoco-topbarantitoco-countdown-containerantitoco-contentantitoco-countdownantitoco-actionantitoco-action-textantitoco-action-button
Data Attributes
data-countdown-end-timedata-countdown-messagedata-countdown-alternative-textdata-countdown-alternative-linkdata-countdown-alternative-link-new-tab
JS Globals
AntiktonTopbarCountdown
REST Endpoints
/wp-json/antikton-topbar-countdown/v1/time
FAQ

Frequently Asked Questions about Antikton Topbar Countdown