Foxdell Folio Taxonomy Toolkit Security & Risk Analysis

wordpress.org/plugins/foxdell-folio-taxonomy-toolkit

Have finer control over your taxonomies so that you can have better organisation of your posts by using taxonomies other than just Categories and Tags …

10 active installs v1.0 PHP + WP 3.0.1+ Updated Jul 7, 2016
admintaxonomiestaxonomytermtermstoolkit
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Foxdell Folio Taxonomy Toolkit Safe to Use in 2026?

Generally Safe

Score 85/100

Foxdell Folio Taxonomy Toolkit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The foxdell-folio-taxonomy-toolkit v1.0 plugin exhibits a generally positive security posture based on the static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is a significant strength, indicating a minimal attack surface. Furthermore, the plugin uses prepared statements for its single SQL query and includes a nonce check, which are good security practices. However, a notable concern arises from the output escaping, with only 15% of outputs being properly escaped. This suggests a potential for Cross-Site Scripting (XSS) vulnerabilities, as unsanitized output can be rendered directly in the browser, allowing attackers to inject malicious scripts.

The plugin's vulnerability history is clean, with no recorded CVEs. This, coupled with the absence of critical or high severity taint flows and dangerous functions in the static analysis, suggests that the codebase is likely well-written and hasn't been a target of significant security flaws to date. The single file operation is not inherently a risk without further context, and the absence of external HTTP requests removes a common attack vector. In conclusion, while the plugin benefits from a small attack surface and a clean vulnerability history, the low percentage of properly escaped outputs presents a tangible risk that should be addressed to improve its overall security.

Key Concerns

  • Low percentage of properly escaped outputs
Vulnerabilities
None known

Foxdell Folio Taxonomy Toolkit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Foxdell Folio Taxonomy Toolkit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
22
4 escaped
Nonce Checks
1
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

15% escaped26 total outputs
Attack Surface

Foxdell Folio Taxonomy Toolkit Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actioninitincludes\class-fofo-taxo-toolkit.php:1525
actionadmin_menuincludes\class-fofo-taxo-toolkit.php:1526
Maintenance & Trust

Foxdell Folio Taxonomy Toolkit Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedJul 7, 2016
PHP min version
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Foxdell Folio Taxonomy Toolkit Developer Profile

TheHandOfCod

4 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Foxdell Folio Taxonomy Toolkit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/foxdell-folio-taxonomy-toolkit/includes/js/ppf-admin.js/wp-content/plugins/foxdell-folio-taxonomy-toolkit/includes/css/ppf-admin.css
Script Paths
/wp-content/plugins/foxdell-folio-taxonomy-toolkit/includes/js/ppf-admin.js/wp-content/plugins/foxdell-folio-taxonomy-toolkit/includes/js/ppf-public.js
Version Parameters
foxdell-folio-taxonomy-toolkit/includes/js/ppf-admin.js?ver=foxdell-folio-taxonomy-toolkit/includes/css/ppf-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
ppf-admin-wrap
HTML Comments
<!-- PPF_APP_OPEN --><!-- PPF_APP_CLOSE --><!-- PPF_APP_BODY_OPEN --><!-- PPF_APP_BODY_CLOSE -->+11 more
Data Attributes
data-ppf-app-uid
JS Globals
ppf_is_admin
FAQ

Frequently Asked Questions about Foxdell Folio Taxonomy Toolkit