Cookiebar by Beard Security & Risk Analysis

wordpress.org/plugins/cookiebar-by-beard

This plugin adds a cookie bar to your website that gives your visitors better control.

10 active installs v1.0.6 PHP + WP 4.3+ Updated Jun 8, 2020
cookiebarcookiesgdpropt-in
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Cookiebar by Beard Safe to Use in 2026?

Generally Safe

Score 85/100

Cookiebar by Beard has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5yr ago
Risk Assessment

The "cookiebar-by-beard" plugin v1.0.6 exhibits a generally positive security posture based on the static analysis. The plugin has a small attack surface, with only one shortcode entry point. Crucially, there are no AJAX handlers or REST API routes, and no cron events, significantly limiting potential entry points for attackers. The absence of dangerous functions and file operations is also a strong indicator of good coding practices. The plugin does have a capability check, which is positive, but the lack of nonce checks and only a moderate percentage of properly escaped output present areas of concern.

The static analysis reveals that 100% of the SQL queries are not using prepared statements, which is a significant risk for SQL injection vulnerabilities. Furthermore, a substantial portion of the output (70%) is not properly escaped, posing a risk of Cross-Site Scripting (XSS) vulnerabilities if user-supplied data is displayed without sufficient sanitization.

The vulnerability history for this plugin is clean, with zero known CVEs. This lack of past vulnerabilities is a positive sign, suggesting a history of secure development. However, the presence of unescaped output and raw SQL queries in the current version means that potential vulnerabilities could still exist and remain undiscovered or unpatched. The overall conclusion is that while the plugin has a low attack surface and a good vulnerability history, the direct coding issues with SQL queries and output escaping require attention to maintain a robust security profile.

Key Concerns

  • SQL queries not using prepared statements
  • Low percentage of properly escaped output
  • No nonce checks on entry points
Vulnerabilities
None known

Cookiebar by Beard Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Cookiebar by Beard Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
0 prepared
Unescaped Output
19
8 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

0% prepared3 total queries

Output Escaping

30% escaped27 total outputs
Attack Surface

Cookiebar by Beard Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[cbbbcookies] includes\shortcode.php:77
WordPress Hooks 11
actionadmin_menucookiebar-by-beard.php:51
actionadmin_initcookiebar-by-beard.php:52
actionwp_footercookiebar-by-beard.php:227
actionwp_enqueue_scriptscookiebar-by-beard.php:245
actioninitincludes\plugin-functions.php:31
filterdefault_contentincludes\plugin-functions.php:47
actionadd_meta_boxesincludes\plugin-functions.php:64
actionsave_postincludes\plugin-functions.php:108
actionwp_footerincludes\plugin-functions.php:173
actionwp_headincludes\plugin-functions.php:204
actionwp_footerincludes\plugin-functions.php:232
Maintenance & Trust

Cookiebar by Beard Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedJun 8, 2020
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Cookiebar by Beard Developer Profile

Martin Greenwood

3 plugins · 10 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Cookiebar by Beard

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/cookiebar-by-beard/css/cbbb.css/wp-content/plugins/cookiebar-by-beard/js/js.cookie.min.js
Script Paths
/wp-content/plugins/cookiebar-by-beard/js/js.cookie.min.js

HTML / DOM Fingerprints

CSS Classes
cbbb-cookie-checkcbbb-cookie-check.closed
Data Attributes
name="cbbb_option_name[cbbb_title]"name="cbbb_option_name[cbbb_intro]"name="cbbb_option_name[cbbb_cookiepage]"name="cbbb_option_name[cbbb_cookiebar_time]"id="cbbb_title"id="cbbb_intro"+3 more
FAQ

Frequently Asked Questions about Cookiebar by Beard