Jalil Toolkit Security & Risk Analysis

wordpress.org/plugins/jalil-toolkit

Jalil Toolkit is a helper plugin for jalil theme.This plugin only used for the jalil theme.It is a required plugin for jalil theme.

0 active installs v1.0.0 PHP + WP 4.2+ Updated Sep 1, 2018
helper-assetshelper-pluginjalil-blogjalil-helper-pluginjalil-toolkit
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Jalil Toolkit Safe to Use in 2026?

Generally Safe

Score 85/100

Jalil Toolkit has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 7yr ago
Risk Assessment

The "jalil-toolkit" plugin v1.0.0 exhibits a generally strong security posture based on the provided static analysis. The absence of dangerous functions, SQL queries, file operations, and external HTTP requests is commendable. Notably, all identified SQL queries utilize prepared statements, and the vast majority of output is properly escaped, significantly mitigating common web vulnerabilities like SQL injection and XSS. The lack of known vulnerabilities in its history further suggests a history of responsible development.

However, there are a few areas for improvement. The plugin has 12 shortcodes, which, while not directly flagged as unprotected in the analysis, represent potential entry points that could be leveraged in conjunction with other vulnerabilities if they were to arise. The complete absence of nonce and capability checks across all code signals, despite having these entry points, is a significant concern. While no direct taint flows with unsanitized paths were found, this lack of input validation and authorization checks creates a wide gap in security, leaving the plugin vulnerable to potential CSRF attacks or privilege escalation if any of the shortcodes' functionalities were to be exploited.

In conclusion, "jalil-toolkit" v1.0.0 demonstrates good practices in terms of secure coding for SQL and output handling. Its clean vulnerability history is a positive indicator. The primary weakness lies in the absence of robust authorization and input validation mechanisms, particularly for its shortcodes, which presents a latent risk that should be addressed to achieve a more secure state.

Key Concerns

  • Missing nonce checks on shortcodes
  • Missing capability checks on shortcodes
Vulnerabilities
None known

Jalil Toolkit Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Jalil Toolkit Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Jalil Toolkit Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
101 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

99% escaped102 total outputs
Attack Surface

Jalil Toolkit Attack Surface

Entry Points12
Unprotected0

Shortcodes 12

[jalil_btn] theme-shortcodes\btn-shortcode.php:26
[jalil_count] theme-shortcodes\count-shortcode.php:43
[jalil_posts] theme-shortcodes\post-shortcode.php:79
[jalil_pricing] theme-shortcodes\pricing-table-shortcode.php:42
[jalil_progress_bar] theme-shortcodes\progress-bar-shortcode.php:25
[jalil_projects] theme-shortcodes\project-shortcode.php:45
[jalil_service] theme-shortcodes\service-shortcode.php:45
[jalil_teams] theme-shortcodes\team-shortcode.php:111
[jalil_testimonials] theme-shortcodes\testimonial-shortcode.php:97
[jalil_slides] theme-shortcodes\theme-slide.php:162
[jalil_title] theme-shortcodes\title-shortcode.php:32
[jalil_video] theme-shortcodes\video-shortcode.php:34
WordPress Hooks 7
actioninitinc\jalil-toolkit-post-type.php:105
filterpost_updated_messagesinc\jalil-toolkit-post-type.php:191
filterwidget_textjalil-toolkit.php:25
actionplugin_loadedjalil-toolkit.php:50
actionwp_enqueue_scriptsjalil-toolkit.php:66
actioninitkc-addons\kc-blocks.php:8
actionadmin_noticeskc-addons\kc-blocks.php:14
Maintenance & Trust

Jalil Toolkit Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.29
Last updatedSep 1, 2018
PHP min version
Downloads976

Community Trust

Rating0/100
Number of ratings0
Active installs0
Alternatives

Jalil Toolkit Alternatives

No alternatives data available yet.

Developer Profile

Jalil Toolkit Developer Profile

jewel1994

4 plugins · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Jalil Toolkit

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jalil-toolkit/assets/css/animate.min.css/wp-content/plugins/jalil-toolkit/assets/css/owl.theme.default.css/wp-content/plugins/jalil-toolkit/assets/css/owl.carousel.css/wp-content/plugins/jalil-toolkit/assets/css/magnific-popup.css/wp-content/plugins/jalil-toolkit/assets/css/jalil-toolkit.css/wp-content/plugins/jalil-toolkit/assets/js/owl.carousel.min.js/wp-content/plugins/jalil-toolkit/assets/js/wow.min.js/wp-content/plugins/jalil-toolkit/assets/js/jquery.counterup.min.js+3 more
Script Paths
/wp-content/plugins/jalil-toolkit/assets/js/owl.carousel.min.js/wp-content/plugins/jalil-toolkit/assets/js/wow.min.js/wp-content/plugins/jalil-toolkit/assets/js/jquery.counterup.min.js/wp-content/plugins/jalil-toolkit/assets/js/waypoints.min.js/wp-content/plugins/jalil-toolkit/assets/js/jquery.magnific-popup.min.js/wp-content/plugins/jalil-toolkit/assets/js/active.js
Version Parameters
jalil-toolkit/assets/css/animate.min.css?ver=jalil-toolkit/assets/css/owl.theme.default.css?ver=jalil-toolkit/assets/css/owl.carousel.css?ver=jalil-toolkit/assets/css/magnific-popup.css?ver=jalil-toolkit/assets/css/jalil-toolkit.css?ver=jalil-toolkit/assets/js/owl.carousel.min.js?ver=jalil-toolkit/assets/js/wow.min.js?ver=jalil-toolkit/assets/js/jquery.counterup.min.js?ver=jalil-toolkit/assets/js/waypoints.min.js?ver=jalil-toolkit/assets/js/jquery.magnific-popup.min.js?ver=jalil-toolkit/assets/js/active.js?ver=

HTML / DOM Fingerprints

CSS Classes
jalil_btnbuttonprimarycall-to-actionstatic-singleicons-infonumber+5 more
Data Attributes
data-animatedata-delay
JS Globals
jalil_btn_shortcodejalil_count_shortcodejalil_post_shortcode
Shortcode Output
[jalil_btn][jalil_count][jalil_post]
FAQ

Frequently Asked Questions about Jalil Toolkit