JetSticky For Elementor Security & Risk Analysis

wordpress.org/plugins/jetsticky-for-elementor

JetSticky is the plugin which allows to make the sections and columns built with Elementor sticky!

30K active installs v1.0.4 PHP 5.4+ WP 4.7+ Updated Aug 24, 2023
elementorstickysticky-columnsticky-headersticky-section
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is JetSticky For Elementor Safe to Use in 2026?

Generally Safe

Score 85/100

JetSticky For Elementor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2yr ago
Risk Assessment

The static analysis of "jetsticky-for-elementor" v1.0.4 reveals a strong security posture based on the provided data. The plugin demonstrates good practices by having no identified dangerous functions, all SQL queries utilizing prepared statements, and all output being properly escaped. Furthermore, the absence of file operations, external HTTP requests, and a lack of taint analysis indicating unsanitized paths are all positive security indicators. The vulnerability history also shows a clean record with no known CVEs, which suggests the developers have a good track record of security or that the plugin has not been subject to extensive security research.

However, the analysis also highlights a significant concern: the complete lack of any identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events that are protected by authentication or capability checks. While this might indicate a very simple plugin, it's unusual for a plugin intended for Elementor to have zero interaction points. The absence of nonce checks, capability checks, and AJAX/REST API endpoints being protected raises a flag. If there are indeed no interaction points, this is a strength. If interaction points exist but are not detected by the analysis, it could be a blind spot. The data indicates a current state of zero risk, but the lack of measurable interaction points needs careful consideration.

In conclusion, the plugin appears to follow secure coding principles for the aspects that were analyzed. The absence of known vulnerabilities is reassuring. The primary weakness identified is the lack of demonstrable and protected entry points in the static analysis. This could either mean the plugin is extremely basic and has no user-facing interactions that require security checks, or the analysis might have missed certain interaction mechanisms. For now, based strictly on the provided data, the plugin shows no active vulnerabilities or high-risk coding patterns, but the context of its function within Elementor warrants a cautious approach regarding potential undiscovered interaction vectors.

Vulnerabilities
None known

JetSticky For Elementor Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

JetSticky For Elementor Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

JetSticky For Elementor Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 14
actionelementor/frontend/after_enqueue_stylesincludes\assets.php:37
actionelementor/frontend/before_enqueue_scriptsincludes\assets.php:38
actionadmin_enqueue_scriptsincludes\assets.php:39
actionelementor/element/column/section_advanced/after_section_endincludes\ext\element-extension.php:43
actionelementor/frontend/column/before_renderincludes\ext\element-extension.php:44
actionelementor/frontend/element/before_renderincludes\ext\element-extension.php:45
actionelementor/element/section/section_advanced/after_section_endincludes\ext\element-extension.php:46
actionelementor/frontend/before_enqueue_scriptsincludes\ext\element-extension.php:47
actionelementor/frontend/container/before_renderincludes\ext\element-extension.php:50
actionelementor/element/container/section_layout/after_section_endincludes\ext\element-extension.php:51
actionelementor/element/container/jet_sticky_section_sticky_settings/before_section_endincludes\ext\element-extension.php:52
actioninitjetsticky-for-elementor.php:85
actioninitjetsticky-for-elementor.php:87
actiontgmpa_registerjetsticky-for-elementor.php:135
Maintenance & Trust

JetSticky For Elementor Maintenance & Trust

Maintenance Signals

WordPress version tested6.3.8
Last updatedAug 24, 2023
PHP min version5.4
Downloads320K

Community Trust

Rating74/100
Number of ratings18
Active installs30K
Developer Profile

JetSticky For Elementor Developer Profile

jetmonsters

33 plugins · 326K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
193 days
View full developer profile
Detection Fingerprints

How We Detect JetSticky For Elementor

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jetsticky-for-elementor/assets/css/jet-sticky-frontend.css/wp-content/plugins/jetsticky-for-elementor/assets/js/jet-sticky-frontend.js
Script Paths
/wp-content/plugins/jetsticky-for-elementor/assets/js/jet-sticky-frontend.js
Version Parameters
jetsticky-for-elementor/assets/css/jet-sticky-frontend.css?ver=jetsticky-for-elementor/assets/js/jet-sticky-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
jet-sticky-element
JS Globals
JetStickyFrontend
FAQ

Frequently Asked Questions about JetSticky For Elementor