
Astro Sticky Buttons Security & Risk Analysis
wordpress.org/plugins/astro-sticky-buttonsAdd sticky buttons for easy contact and social sharing on your site. Supports email, phone, WhatsApp, Skype, Facebook, Instagram, and more.
Is Astro Sticky Buttons Safe to Use in 2026?
Generally Safe
Score 100/100Astro Sticky Buttons has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "astro-sticky-buttons" v1.3.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any critical or high severity taint flows, along with the complete use of prepared statements for SQL queries and proper output escaping for the vast majority of outputs, indicates good development practices regarding data sanitization and protection against common web vulnerabilities. The presence of nonce and capability checks on the identified entry points further reinforces this positive assessment, suggesting an effort to restrict access to potentially sensitive actions.
Despite the overall good standing, the plugin has a single shortcode as its sole entry point, which is not explicitly protected by authentication checks in the provided data. While this shortcode may not inherently carry significant risk, the lack of specific authorization for it represents a minor concern. The plugin's vulnerability history is also a strong positive, with zero recorded CVEs, suggesting a well-maintained and secure codebase over time.
In conclusion, "astro-sticky-buttons" v1.3.0 appears to be a secure plugin with robust coding practices. The main area for potential improvement is ensuring that even single entry points like shortcodes have appropriate access control mechanisms in place, although the risk associated with this specific shortcode is not explicitly defined as high without further context. The lack of historical vulnerabilities is a significant strength, indicating reliability.
Key Concerns
- Single entry point (shortcode) potentially lacking specific auth checks
Astro Sticky Buttons Security Vulnerabilities
Astro Sticky Buttons Code Analysis
SQL Query Safety
Output Escaping
Astro Sticky Buttons Attack Surface
Shortcodes 1
WordPress Hooks 7
Maintenance & Trust
Astro Sticky Buttons Maintenance & Trust
Maintenance Signals
Community Trust
Astro Sticky Buttons Alternatives
Mobile Contact Line
mobile-contact-line
Simple plugin that allow you add mobile contact line to your wordpress site
Sticky CTA – Sticky Floating Notification bar, Buttons, Call To Action A/B Testing
sticky-floating-notification-bar-call-to-action
Sticky CTA boosts user engagement with sticky and floating buttons, keeping CTAs visible to maximize clicks and conversions.
Chat Widget: Floating Customer Support Button for 30+ Channels, Supporting SMS, Calls, and Chat – Bit Assist
bit-assist
Floating sticky chat button for WhatsApp Chat, Facebook Messenger, Telegram, Instagram, SMS, Call, Discord chat, TikTok, Line & 30+ channels
Cresta Help Chat
cresta-whatsapp-chat
Allow your users and customers to contact you via WhatsApp with a single click.
Sticky Buttons – Floating Buttons Builder
sticky-buttons
Increase user engagement by incorporating sticky buttons that highlight relevant information on your website.
Astro Sticky Buttons Developer Profile
5 plugins · 50 total installs
How We Detect Astro Sticky Buttons
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/astro-sticky-buttons/css/astro-sticky-buttons.css/wp-content/plugins/astro-sticky-buttons/js/astro-sticky-buttons.js/wp-content/plugins/astro-sticky-buttons/js/astro-sticky-buttons.jsastro-sticky-buttons/css/astro-sticky-buttons.css?ver=astro-sticky-buttons/js/astro-sticky-buttons.js?ver=HTML / DOM Fingerprints
astro-sticky-buttonsdata-astro-sbastro_sb_frontend_options