
Custom Post Type Sticky Security & Risk Analysis
wordpress.org/plugins/custom-post-type-stickyExtends sticky post functionality to custom post types in a way that is identical to default posts.
Is Custom Post Type Sticky Safe to Use in 2026?
Generally Safe
Score 85/100Custom Post Type Sticky has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The static analysis of the "custom-post-type-sticky" v1.2 plugin reveals a generally strong security posture. The absence of known vulnerabilities in its history and the complete lack of critical or high-severity issues in taint analysis are positive indicators. Furthermore, the code demonstrates good practices by utilizing prepared statements for all SQL queries and ensuring 100% output escaping, with no file operations or external HTTP requests detected. The plugin also exhibits a minimal attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events that are exposed without authentication or permission checks.
Custom Post Type Sticky Security Vulnerabilities
Custom Post Type Sticky Code Analysis
SQL Query Safety
Custom Post Type Sticky Attack Surface
WordPress Hooks 2
Maintenance & Trust
Custom Post Type Sticky Maintenance & Trust
Maintenance Signals
Community Trust
Custom Post Type Sticky Alternatives
Ultimate Posts Widget
ultimate-posts-widget
The ultimate widget for displaying posts, custom post types or sticky posts with an array of options.
Sticky Posts Expire
sticky-posts-expire
A simple plugin that allows you to set an expiration date on posts. Once a post is expired, it will no longer be sticky.
Ultimate Sticky Posts Widget
ultimate-sticky-posts
This Widget works well to display sticky/posts or both.
WP Category Sticky Posts
category-sticky-posts
Allows you to set Sticky posts for individual category archives.
Post Glue
post-glue
Sticky posts for WordPress, improved.
Custom Post Type Sticky Developer Profile
6 plugins · 4K total installs
How We Detect Custom Post Type Sticky
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/custom-post-type-sticky/admin.min.jsadmin.min.jscustom-post-type-sticky/admin.min.js?ver=HTML / DOM Fingerprints
sscpt