
F13 Table of Contents Security & Risk Analysis
wordpress.org/plugins/f13-tocAdd a Table of Contents with internal anchor links, built automatically from header tags.
Is F13 Table of Contents Safe to Use in 2026?
Generally Safe
Score 85/100F13 Table of Contents has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "f13-toc" plugin v1.0.1 exhibits an exceptionally strong security posture based on the provided static analysis. The complete absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events is a significant strength. Furthermore, the code demonstrates excellent security practices by exclusively using prepared statements for SQL queries and ensuring all outputs are properly escaped. The lack of file operations, external HTTP requests, and the absence of bundled libraries further reduce the potential attack surface. The taint analysis showing zero flows with unsanitized paths reinforces this positive assessment.
The plugin's vulnerability history is also clean, with no recorded CVEs. This, combined with the static analysis results, suggests a well-developed and secure plugin. However, the lack of any explicit security checks like nonce checks or capability checks across the entire plugin is a minor concern. While there are no apparent vulnerabilities to exploit, the absence of these standard WordPress security mechanisms could be a weakness if new, unforeseen entry points were to be introduced in future versions, or if the plugin relied on other components that did not provide sufficient security. Overall, "f13-toc" v1.0.1 appears to be a highly secure plugin, with its primary weakness being the absence of standard security checks which, in this specific version with no entry points, poses a negligible immediate risk.
F13 Table of Contents Security Vulnerabilities
F13 Table of Contents Release Timeline
F13 Table of Contents Code Analysis
F13 Table of Contents Attack Surface
WordPress Hooks 2
Maintenance & Trust
F13 Table of Contents Maintenance & Trust
Maintenance Signals
Community Trust
F13 Table of Contents Alternatives
Easy Table of Contents
easy-table-of-contents
Adds a user friendly and fully automatic way to create and display a table of contents generated from the page content.
Table of Contents Plus
table-of-contents-plus
A powerful yet user friendly plugin that automatically creates a table of contents. Can also output a sitemap listing all pages and categories.
LuckyWP Table of Contents
luckywp-table-of-contents
Creates SEO-friendly table of contents for your posts/pages. Works automatically or manually (via shortcode, Gutenberg block or widget).
Rich Table of Contents
rich-table-of-content
RTOC is a table of contents generation plugin from Japan that allows anyone to easily create a table of contents. Equipped with the functions of the c …
SimpleTOC – Table of Contents Block
simpletoc
SEO-friendly Table of Contents Gutenberg block. No JavaScript or CSS by default.
F13 Table of Contents Developer Profile
11 plugins · 80 total installs
How We Detect F13 Table of Contents
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/f13-toc/css/f13-toc.cssf13-toc.css?ver=HTML / DOM Fingerprints
<!-- no-f13-toc -->id="f13-toc-header"