Header scroll event for Elementor Security & Risk Analysis

wordpress.org/plugins/header-scroll-event-for-elementor

Adds a scrolled class to the body and header element when you scroll your page.

0 active installs v1.0.2 PHP 7.2+ WP 5.2+ Updated Feb 5, 2025
addonselementorelementor-addonselementswidgets
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Header scroll event for Elementor Safe to Use in 2026?

Generally Safe

Score 92/100

Header scroll event for Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "header-scroll-event-for-elementor" plugin version 1.0.2 exhibits a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events indicates a deliberately minimal attack surface. Furthermore, the code signals demonstrate good development practices, with no dangerous functions identified, all SQL queries utilizing prepared statements, and all outputs being properly escaped. The lack of file operations and external HTTP requests further reduces potential vulnerabilities. The plugin also shows no history of known vulnerabilities (CVEs), suggesting a consistent focus on security or a lack of prior discovered flaws.

While the static analysis reveals no immediate security concerns, the complete absence of nonce checks and capability checks is a notable observation. Although the current attack surface is zero, a future update introducing new entry points without these fundamental security checks could introduce significant risks. The taint analysis showing zero flows with unsanitized paths is positive, but the fact that zero flows were analyzed means this is an area that might not have been thoroughly tested for complex vulnerabilities. Overall, the plugin appears secure for its current version and functionality, but the lack of these core WordPress security mechanisms warrants attention for future development.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
Vulnerabilities
None known

Header scroll event for Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Header scroll event for Elementor Release Timeline

v1.0.2Current
v1.0.1
Code Analysis
Analyzed Apr 16, 2026

Header scroll event for Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Header scroll event for Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitmiga_scroll_header.php:25
Maintenance & Trust

Header scroll event for Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedFeb 5, 2025
PHP min version7.2
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Header scroll event for Elementor Developer Profile

Michael

9 plugins · 10K total installs

92
trust score
Avg Security Score
97/100
Avg Patch Time
11 days
View full developer profile
Detection Fingerprints

How We Detect Header scroll event for Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/header-scroll-event-for-elementor/assets/css/style.css/wp-content/plugins/header-scroll-event-for-elementor/assets/js/script.js
Script Paths
/wp-content/plugins/header-scroll-event-for-elementor/assets/js/script.js
Version Parameters
header-scroll-event-for-elementor/assets/css/style.css?ver=header-scroll-event-for-elementor/assets/js/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
miga-scroll-header-active
FAQ

Frequently Asked Questions about Header scroll event for Elementor