Icon Box Block – Insert your favorite icon with customization and design Security & Risk Analysis

wordpress.org/plugins/envision-icon-box-block

Icon Box is a straightforward block for the Gutenberg editor that lets you place a stylish icon with a fully customizable box.

300 active installs v0.01 PHP 7.2+ WP 6.5+ Updated Jan 25, 2026
blockfeature-blockfont-awesomeicon-listinfo-box-block
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Icon Box Block – Insert your favorite icon with customization and design Safe to Use in 2026?

Generally Safe

Score 100/100

Icon Box Block – Insert your favorite icon with customization and design has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "envision-icon-box-block" v0.01 plugin exhibits a strong initial security posture. The static analysis reveals no identified attack surface in terms of AJAX handlers, REST API routes, shortcodes, or cron events. Furthermore, the code demonstrates excellent adherence to secure coding practices with no dangerous functions, all SQL queries utilizing prepared statements, and 100% of output being properly escaped. No file operations, external HTTP requests, or identified vulnerabilities in the taint analysis further bolster this positive assessment.

While the absence of vulnerabilities and a clean attack surface are commendable, the lack of any explicit security checks like nonce or capability checks across the entire plugin raises a significant concern. Although the current attack surface is zero, this indicates a lack of defensive programming that could become a weakness if the plugin evolves or if future functionality is added without proper security considerations. The plugin's complete lack of vulnerability history is a positive indicator of past security, but it could also be due to its limited functionality or recent release, rather than a guaranteed ongoing secure state.

In conclusion, the plugin is currently in a very secure state due to its apparent lack of functionality and strong adherence to secure coding principles for the identified components. However, the absence of fundamental security checks like nonce and capability checks represents a notable weakness that should be addressed, especially as the plugin potentially grows. The best practice would be to implement these checks proactively.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Icon Box Block – Insert your favorite icon with customization and design Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Icon Box Block – Insert your favorite icon with customization and design Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Icon Box Block – Insert your favorite icon with customization and design Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitenvision-icon-box-block.php:26
Maintenance & Trust

Icon Box Block – Insert your favorite icon with customization and design Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 25, 2026
PHP min version7.2
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs300
Developer Profile

Icon Box Block – Insert your favorite icon with customization and design Developer Profile

Plugin Envision

5 plugins · 5K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Icon Box Block – Insert your favorite icon with customization and design

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/envision-icon-box-block/build/style-index.css/wp-content/plugins/envision-icon-box-block/build/index.js
Script Paths
/wp-content/plugins/envision-icon-box-block/build/index.js
Version Parameters
envision-icon-box-block/build/style-index.css?ver=envision-icon-box-block/build/index.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Icon Box Block – Insert your favorite icon with customization and design