AppearanceTools Security & Risk Analysis

wordpress.org/plugins/appearancetools

This plugin will activate every Block Editor setting available in WordPress.

30 active installs v1.0.0 PHP 7.0+ WP 6.1+ Updated Mar 26, 2023
appearancetoolsblock-editordesignfull-site-editingstyle-options
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AppearanceTools Safe to Use in 2026?

Generally Safe

Score 85/100

AppearanceTools has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The static analysis of the 'appearancetools' v1.0.0 plugin reveals a very strong initial security posture. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code analysis shows excellent practices regarding SQL queries (all prepared), output escaping (all escaped), and a lack of dangerous functions, file operations, external HTTP requests, and bundled libraries. The complete absence of taint flows, especially those with unsanitized paths or high severity, further reinforces this positive assessment.

The vulnerability history for this plugin is equally reassuring, with zero known CVEs recorded. This, combined with the clean static analysis, suggests a plugin that has been developed with security in mind and has not yet been found to contain exploitable vulnerabilities. However, it is important to note that the absence of security checks like nonce and capability checks across the zero identified entry points isn't a direct concern in this specific version due to the lack of those entry points. If future versions introduce these, such checks will become critical. Overall, 'appearancetools' v1.0.0 appears to be a highly secure plugin based on the provided data, with no immediate security risks identified.

Vulnerabilities
None known

AppearanceTools Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

AppearanceTools Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

AppearanceTools Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterwp_theme_json_data_themeappearancetools.php:42
Maintenance & Trust

AppearanceTools Maintenance & Trust

Maintenance Signals

WordPress version tested6.2.9
Last updatedMar 26, 2023
PHP min version7.0
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

AppearanceTools Developer Profile

James Roberts

3 plugins · 100 total installs

85
trust score
Avg Security Score
87/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AppearanceTools

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about AppearanceTools