
<i> Toolbar Security & Risk Analysis
wordpress.org/plugins/i-toolbar<i> Toolbar is an easy to use Icon picker that integrates in the rich-text block toolbar. Powered by Bootstrap Icons (MIT).
Is <i> Toolbar Safe to Use in 2026?
Generally Safe
Score 100/100<i> Toolbar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
Based on the provided static analysis and vulnerability history, the i-toolbar plugin v1.2.2 exhibits a very strong security posture. The static analysis reveals no identified entry points such as AJAX handlers, REST API routes, or shortcodes, which significantly reduces the potential attack surface. Furthermore, the code signals indicate no dangerous functions are used, all SQL queries are properly prepared, and output is consistently escaped, which are excellent security practices. The lack of any recorded vulnerabilities, past or present, is also a positive indicator of the plugin's security development and maintenance. The plugin also demonstrates adherence to security by not making external HTTP requests and not relying on bundled libraries, which can sometimes introduce vulnerabilities. The only minor point to note is the absence of explicit nonce and capability checks, which could be seen as a missed opportunity for defense-in-depth in the rare event that an unexpected entry point were discovered, though with the current findings, this is a very low risk. Overall, the plugin appears to be securely developed and maintained, with a negligible risk profile.
Key Concerns
- No nonce checks
- No capability checks
<i> Toolbar Security Vulnerabilities
<i> Toolbar Code Analysis
Output Escaping
<i> Toolbar Attack Surface
WordPress Hooks 1
Maintenance & Trust
<i> Toolbar Maintenance & Trust
Maintenance Signals
Community Trust
<i> Toolbar Alternatives
Enable Navigation Icons
enable-navigation-icons
Easily add icons to Navigation Block items in WordPress.
Emoji Toolbar
emoji-toolbar
A simple Emoji picker that integrates in the rich-text block toolbar.
Simple Alert Blocks
simple-alert-blocks
Simple alert notices for the new WordPress block editor.
Gosign – Google Maps Block
gosign-google-maps-block
Add Google Maps, Custom Style Google Maps, Markers, Info Windows, Marker animations and many more.
Omni Icon – Modern SVG icon library for WordPress
omni-icon
A modern SVG icon library for WordPress with support for custom uploads and 200,000+ Iconify icons across block editor, page builders, and themes.
<i> Toolbar Developer Profile
4 plugins · 2K total installs
How We Detect <i> Toolbar
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/i-toolbar/assets/admin/css/style-editor.css/wp-content/plugins/i-toolbar/assets/bootstrap-icons/font/bootstrap-icons.css/wp-content/plugins/i-toolbar/blocks/build/index.js/wp-content/plugins/i-toolbar/blocks/build/index.jsi-toolbar/blocks/build/index.js?ver=i-toolbar/assets/admin/css/style-editor.css?ver=i-toolbar/assets/bootstrap-icons/font/bootstrap-icons.css?ver=HTML / DOM Fingerprints
globalBootstrapIconToolbarData