
Beans Visual Hook Guide Security & Risk Analysis
wordpress.org/plugins/beans-visual-hook-guideA useful companion tool for theme development with the Beans Framework. Displays all possible Markup Action Hooks made available by the Beans HTML AP …
Is Beans Visual Hook Guide Safe to Use in 2026?
Generally Safe
Score 85/100Beans Visual Hook Guide has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "beans-visual-hook-guide" v1.1.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by having no known vulnerabilities (CVEs) and utilizing prepared statements for all SQL queries, along with performing file operations and external HTTP requests. The presence of a nonce check on its single AJAX endpoint is also a positive sign. However, a significant concern is the unprotected AJAX handler, which represents a direct attack vector. While the static analysis found no dangerous functions or taint flows, the lack of capability checks on the AJAX endpoint means any authenticated user could potentially trigger its functionality without proper authorization, leading to unintended actions or information disclosure.
Key Concerns
- Unprotected AJAX handler
- No capability checks on AJAX handler
- Moderate output escaping (74%)
Beans Visual Hook Guide Security Vulnerabilities
Beans Visual Hook Guide Code Analysis
Output Escaping
Beans Visual Hook Guide Attack Surface
AJAX Handlers 1
WordPress Hooks 10
Maintenance & Trust
Beans Visual Hook Guide Maintenance & Trust
Maintenance Signals
Community Trust
Beans Visual Hook Guide Alternatives
Beans Simple Edits
beans-simple-edits
A plugin to let you edit three of the most commonly modified areas in any Beans theme: the post-info (byline), the post-meta, and the footer area.
Beans Simple Shortcodes
beans-simple-shortcodes
A useful companion tool for theme development with the Beans Framework. Provides a library of Shortcodes that can more easily display information abo …
OttoKit: All-in-One Automation Platform
suretriggers
Experience the power of automation within WordPress: Connect 1,300+ apps, automate manual tasks, and unlock your full potential. Get started now!
Uncanny Automator – Easy Automation, Integration, Webhooks & Workflow Builder Plugin
uncanny-automator
Uncanny Automator is the easiest and most powerful way to connect your WordPress plugins, sites and apps together with powerful automations.
Astra Hooks
astra-hooks
Add your content to Hooks in the Astra theme from the customizer.
Beans Visual Hook Guide Developer Profile
3 plugins · 10 total installs
How We Detect Beans Visual Hook Guide
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/beans-visual-hook-guide/assets/js/css-on-the-fly.js/wp-content/plugins/beans-visual-hook-guide/assets/js/markup-id-scraper.js/wp-content/plugins/beans-visual-hook-guide/assets/js/css-on-the-fly.js/wp-content/plugins/beans-visual-hook-guide/assets/js/markup-id-scraper.js/assets/js/css-on-the-fly.js?ver=/assets/js/markup-id-scraper.js?ver=HTML / DOM Fingerprints
beans-bvhg-hook-marker<!-- beans-visual-hook-guide -->data-markup-idcssOnTheFlyParamsscraperParams