
Elvez Hide Site Header & Footer Security & Risk Analysis
wordpress.org/plugins/elvez-hide-site-header-and-footerHide site header and footer on specified page.
Is Elvez Hide Site Header & Footer Safe to Use in 2026?
Generally Safe
Score 85/100Elvez Hide Site Header & Footer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "elvez-hide-site-header-and-footer" v1.0.7 demonstrates a generally strong security posture based on the provided static analysis. The absence of any recorded vulnerabilities, including CVEs, is a significant positive indicator. Furthermore, the code analysis reveals no dangerous functions, SQL injection risks, or external HTTP requests, all of which are excellent security practices. The plugin also shows a high percentage of properly escaped output and utilizes prepared statements for its SQL queries, further mitigating common attack vectors. The presence of nonce checks and a limited attack surface (zero entry points) also contribute to its security. However, a notable weakness is the complete absence of capability checks. While the plugin has no apparent direct entry points that would immediately expose this, it means that any future introduction of functionality or modification to existing functionality that might interact with user roles or permissions would be entirely unprotected. This lack of capability checks presents a potential for privilege escalation vulnerabilities if the plugin's functionality were to be expanded or if an attacker could somehow trigger its operations without proper authorization.
In conclusion, the plugin is currently secure with no immediate exploitable flaws identified in the static analysis. Its adherence to secure coding practices like prepared statements and output escaping is commendable. The primary concern lies in the missing capability checks, which, while not an active vulnerability in the current version, represent a potential future risk. The plugin's clean vulnerability history further supports its current stability, but the lack of capability checks is a gap that should ideally be addressed to ensure robust security moving forward, especially if the plugin's features were to evolve.
Key Concerns
- Missing capability checks
Elvez Hide Site Header & Footer Security Vulnerabilities
Elvez Hide Site Header & Footer Code Analysis
Output Escaping
Elvez Hide Site Header & Footer Attack Surface
WordPress Hooks 15
Maintenance & Trust
Elvez Hide Site Header & Footer Maintenance & Trust
Maintenance Signals
Community Trust
Elvez Hide Site Header & Footer Alternatives
Header and Footer Scripts
header-and-footer-scripts
Header and Footer Scripts plugin allows you to add scripts to WordPress site's and just before closing tag.
Header Footer for Beaver Builder
bb-header-footer
An easy-to-use Beaver Builder addon to import pages or templates as a header or a footer across a Beaver Builder website.
PRyC WP: Add custom content to post and page (top/bottom)
pryc-wp-add-custom-content-to-bottom-of-post
Add custom content to post and/or page (top/bottom). You may use text, HTML, Shortcodes and JavaScript. Simple, but work...
Ultra Addons Lite for Elementor
ut-elementor-addons-lite
Ultra Addons Lite for Elementor enhances your page-building experience with creative elements & extensions, offering extensive customization options
Custom Login Css
custom-login-css
Adding the header and footer to your login page.
Elvez Hide Site Header & Footer Developer Profile
7 plugins · 180 total installs
How We Detect Elvez Hide Site Header & Footer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/elvez-hide-site-header-and-footer/admin/js/elvez-hide-site-header-and-footer-admin.jselvez-hide-site-header-and-footer/admin/js/elvez-hide-site-header-and-footer-admin.js?ver=HTML / DOM Fingerprints
data-elvez-hide-site-header-and-footer-nonceelvez_hide_site_header_and_footer_admin_params