Identify Headings Security & Risk Analysis

wordpress.org/plugins/identify-headings

A plugin that adds ID attributes to heading, paragraph, and list elements Identify Headings - Allow visitors to link to parts of your page by automat …

10 active installs v1.0.8 PHP 7.3+ WP 5.4+ Updated Aug 13, 2020
accessibilitylinksseo
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Identify Headings Safe to Use in 2026?

Generally Safe

Score 85/100

Identify Headings has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The "identify-headings" plugin v1.0.8 exhibits a very strong security posture based on the provided static analysis. There are no identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events that could be exploited. The code demonstrates excellent security practices, with no dangerous functions, all SQL queries using prepared statements, and all outputs properly escaped. Furthermore, there are no file operations, external HTTP requests, or indications of missing nonce or capability checks. The taint analysis shows no critical or high severity flows, suggesting no obvious injection vulnerabilities.

The plugin also has a clean vulnerability history, with no known CVEs recorded. This absence of past vulnerabilities, combined with the robust static analysis findings, suggests a well-maintained and secure codebase. The lack of any recorded vulnerabilities over time is a significant positive indicator for the plugin's security. Overall, the plugin appears to be exceptionally secure, with no immediate red flags or areas of concern identified in the provided data. Its minimal attack surface and adherence to secure coding practices make it a low-risk option from a security perspective.

Vulnerabilities
None known

Identify Headings Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Identify Headings Release Timeline

v1.0.8Current
v1.0.7
v1.0.5
v1.0.4
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 17, 2026

Identify Headings Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
1 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped1 total outputs
Attack Surface

Identify Headings Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
filterthe_contentidentify-headings.php:34
Maintenance & Trust

Identify Headings Maintenance & Trust

Maintenance Signals

WordPress version tested5.4.19
Last updatedAug 13, 2020
PHP min version7.3
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Identify Headings Developer Profile

tedmaster

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Identify Headings

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

CSS Classes
ihihih-linkifier
Data Attributes
id-class="
FAQ

Frequently Asked Questions about Identify Headings