GutenTOC – Advanced Table of Contents Security & Risk Analysis

wordpress.org/plugins/gutentoc-advance-table-of-content

GutenTOC is an SEO-friendly Table of Contents builder block for the WordPress block editor. It scans headings in your content and automatically gene …

700 active installs v2.1.0 PHP 5.6+ WP 5.2+ Updated Sep 13, 2025
advanced-tocanchorsblock-editortable-of-contentstoc
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is GutenTOC – Advanced Table of Contents Safe to Use in 2026?

Generally Safe

Score 100/100

GutenTOC – Advanced Table of Contents has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

Based on the provided static analysis, the 'gutentoc-advance-table-of-content' plugin version 2.1.0 exhibits an exceptionally clean security posture. The absence of any detected dangerous functions, raw SQL queries, unescaped output, file operations, external HTTP requests, or vulnerability history suggests robust secure coding practices. The zero-count for AJAX handlers, REST API routes, shortcodes, and cron events, especially with zero unprotected entry points, significantly minimizes the plugin's attack surface. Taint analysis also shows no concerning flows, further reinforcing the perception of a secure codebase.

While the lack of any discovered vulnerabilities or concerning code signals is a strong positive, it's important to acknowledge that static analysis is not infallible. The complete absence of nonces and capability checks on any entry points, coupled with a zero-count for these security mechanisms, could be a point of concern if the plugin were to introduce new functionalities in the future that exposed new entry points. However, given the current analysis, this is a theoretical risk rather than an immediate one. The plugin's strengths lie in its minimal attack surface and the evident adherence to secure coding principles for the functionalities it currently possesses.

Vulnerabilities
None known

GutenTOC – Advanced Table of Contents Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

GutenTOC – Advanced Table of Contents Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

GutenTOC – Advanced Table of Contents Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionwp_enqueue_scriptsgutentoc.php:24
actionadmin_initgutentoc.php:45
actionadmin_enqueue_scriptsgutentoc.php:56
filterplugin_action_linksgutentoc.php:59
Maintenance & Trust

GutenTOC – Advanced Table of Contents Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedSep 13, 2025
PHP min version5.6
Downloads18K

Community Trust

Rating94/100
Number of ratings12
Active installs700
Developer Profile

GutenTOC – Advanced Table of Contents Developer Profile

Tauhidpro

2 plugins · 2K total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect GutenTOC – Advanced Table of Contents

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/gutentoc-advance-table-of-content/dist/init.php/wp-content/plugins/gutentoc-advance-table-of-content/dist/toc.js/wp-content/plugins/gutentoc-advance-table-of-content/dist/gutentoc-wellcome.css
Script Paths
/wp-content/plugins/gutentoc-advance-table-of-content/dist/toc.js/wp-content/plugins/gutentoc-advance-table-of-content/dist/gutentoc-wellcome.css

HTML / DOM Fingerprints

Shortcode Output
[gutentoc/table-of-contents]
FAQ

Frequently Asked Questions about GutenTOC – Advanced Table of Contents