
Collapse Magic Security & Risk Analysis
wordpress.org/plugins/collapse-magicThe easy way to create a collapsible text block with a 'read-more' label on any page. Also provides a fading text option.
Is Collapse Magic Safe to Use in 2026?
Generally Safe
Score 100/100Collapse Magic has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "collapse-magic" plugin v1.5.0 demonstrates a generally strong security posture based on the provided static analysis. The absence of dangerous functions, external HTTP requests, file operations, and SQL queries not using prepared statements are all positive indicators. The high percentage of properly escaped output further suggests good development practices in handling data displayed to users. A significant strength is the lack of any known vulnerabilities or CVEs in its history, implying a history of stable and secure development.
However, there are a few areas that warrant attention. The presence of two shortcodes as entry points, while not currently unprotected, represents a potential attack surface that could become a concern if future updates introduce vulnerabilities within their handling. The lack of any nonce checks, even on shortcodes which can sometimes lead to unintended actions, is a notable omission. While no critical taint flows or unsanitized paths were found, the analysis did not include any taint flows, making it impossible to definitively assess this area. The single capability check, while present, is not explicitly detailed, leaving a minor unknown regarding its robustness.
Overall, the plugin appears to be well-developed and has a clean security history. The primary areas for improvement are bolstering the security of the shortcode entry points with nonce checks and potentially expanding taint analysis to ensure no hidden vulnerabilities exist. The plugin's strengths in avoiding common pitfalls like raw SQL and dangerous functions are commendable.
Key Concerns
- Shortcode entry points without specific nonce checks
- No taint analysis performed (unknown risk)
- Limited capability check details
Collapse Magic Security Vulnerabilities
Collapse Magic Code Analysis
Output Escaping
Collapse Magic Attack Surface
Shortcodes 2
WordPress Hooks 5
Maintenance & Trust
Collapse Magic Maintenance & Trust
Maintenance Signals
Community Trust
Collapse Magic Alternatives
Easy Accordion – Responsive Accordion FAQ Builder and Product FAQ
easy-accordion-free
Easily create Accordions, FAQs, and Product FAQ for WooCommerce. Customizable drag & drop WordPress FAQ builder plugin.
Accordion FAQ – Compatible With All Page Builder (Elementor, Gutenberg)
responsive-accordion-and-collapse
Accordion And Collapse is the most easiest drag & drop accordion builder for WordPress. You can add multiple accordion and collapse with this.
Accordions
accordions
Create sleek accordions, tabs, FAQs, and image accordions with a React builder featuring advanced styling, animations, OpenAI support, and customizati …
Granular Controls For Elementor
granular-controls-for-elementor
Custom controls for Elementor Page Builder.
Accordion Blocks
accordion-blocks
Gutenberg block for creating responsive accordion drop-downs.
Collapse Magic Developer Profile
6 plugins · 2K total installs
How We Detect Collapse Magic
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/collapse-magic/css/collapse-magic.css/wp-content/plugins/collapse-magic/js/collapse-magic.js/wp-content/plugins/collapse-magic/css/collapse-magic-admin.css/wp-content/plugins/collapse-magic/js/collapse-magic-admin.js/wp-content/plugins/collapse-magic/js/collapse-magic.js/wp-content/plugins/collapse-magic/js/collapse-magic-admin.jscollapse-magic/css/collapse-magic.css?ver=collapse-magic/js/collapse-magic.js?ver=collapse-magic/css/collapse-magic-admin.css?ver=collapse-magic/js/collapse-magic-admin.js?ver=HTML / DOM Fingerprints
claps-contentclaps-headerdata-claps-iddata-claps-styledata-claps-closeddata-claps-opendata-claps-widthdata-claps-height+15 moreclaps_debug