
Doohickey's Dev Tools Security & Risk Analysis
wordpress.org/plugins/doohickeys-dev-toolsEssential web development utilities right in your WordPress dashboard — CSS generators, color tools, code formatters, and more.
Is Doohickey's Dev Tools Safe to Use in 2026?
Generally Safe
Score 100/100Doohickey's Dev Tools has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'doohickeys-dev-tools' plugin version 1.0.4 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, unescaped output, or file operations is a significant positive indicator. Furthermore, the complete lack of identified taint flows suggests that user-supplied data is not being mishandled in a way that could lead to code execution or data breaches. The plugin also shows no history of known vulnerabilities, which is a very reassuring sign of ongoing security diligence or a lack of prior exploitation.
While the plugin demonstrates good security practices, there are some areas that warrant attention. The most notable is the complete absence of any entry points such as AJAX handlers, REST API routes, shortcodes, or cron events that are unprotected. This might indicate a very limited functionality or a plugin that relies on external triggers. However, it also means that the attack surface is effectively zero, which is excellent from a security perspective. The sole capability check suggests that some operations are protected by user roles. The inclusion of the Freemius v1.0 bundled library, while common, could be a potential concern if it is outdated and contains known vulnerabilities, though this is not indicated in the provided data. Overall, the plugin appears to be very secure as presented, with its main strength being its minimal and well-protected attack surface.
Key Concerns
- Bundled Freemius v1.0 library
Doohickey's Dev Tools Security Vulnerabilities
Doohickey's Dev Tools Code Analysis
Bundled Libraries
Doohickey's Dev Tools Attack Surface
WordPress Hooks 4
Maintenance & Trust
Doohickey's Dev Tools Maintenance & Trust
Maintenance Signals
Community Trust
Doohickey's Dev Tools Alternatives
Version Info – Server Health Monitor, PHP & MySQL Version Display, Environment Indicators
version-info
The #1 technical dashboard for WordPress professionals. Display PHP, MySQL, WP & server versions anywhere in admin. Monitor CPU, RAM, DB size & …
ACF RGBA Color Picker
acf-rgba-color-picker
A RGBA-Color-Picker field for Advanced Custom Fields
Page Visits Counter – Lite
page-visits-counter-lite
Display number of visits for each page in admin dashboard and browser developer-tool/console. Doesn't count page refresh as a new visit...
Advanced Post Manager
advanced-post-manager
Turbo charge your posts admin for any custom post type with sortable filters and columns, and auto-registration of metaboxes.
ACF Color Swatches
acf-color-swatches
An add-on for Advanced Custom Fields to allow users to select from a list of color choices. Setting up the field works exactly like setting up a radio …
Doohickey's Dev Tools Developer Profile
1 plugin · 0 total installs
How We Detect Doohickey's Dev Tools
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/doohickeys-dev-tools/build/index.js/wp-content/plugins/doohickeys-dev-tools/build/index.css/wp-content/plugins/doohickeys-dev-tools/build/index.jsdoohickeys-dev-tools/build/index.js?ver=doohickeys-dev-tools/build/index.css?ver=HTML / DOM Fingerprints
dkdt-appdkdtData