
NexIndex – Auto Table of Contents & SEO Links Security & Risk Analysis
wordpress.org/plugins/nexindexNexIndex is the Next-Gen Table of Contents plugin. Beautiful skins, Smart SEO Anchors, Inline Headings (News Style), and Mobile-First design.
Is NexIndex – Auto Table of Contents & SEO Links Safe to Use in 2026?
Generally Safe
Score 100/100NexIndex – Auto Table of Contents & SEO Links has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The nexindex v1.2.0 plugin demonstrates a strong security posture based on the provided static analysis. The absence of any identified attack surface through AJAX, REST API, shortcodes, or cron events, and the lack of dangerous functions, SQL queries not using prepared statements, and file operations are all positive indicators. Furthermore, the plugin exhibits excellent output escaping practices and a negligible number of external HTTP requests, suggesting a robust approach to preventing common web vulnerabilities.
While the code analysis reveals no critical or high-severity taint flows and the plugin has no recorded vulnerability history, there are minor areas for improvement. The lack of nonce checks is a potential concern, especially if future updates introduce or expose any entry points. Similarly, the reliance on capability checks for only two instances might suggest that other areas, if they exist, might not be adequately secured. The bundling of TinyMCE, while a common library, could be a concern if it's an outdated version, as it might carry its own set of vulnerabilities.
Overall, nexindex v1.2.0 appears to be a secure plugin with good development practices in place. The limited attack surface and thorough code sanitization are significant strengths. However, the absence of nonce checks and the potential for an outdated bundled library warrant careful consideration for any further development or deployment, even though no explicit vulnerabilities are currently identified in the provided data.
Key Concerns
- Missing nonce checks
- Bundled library (TinyMCE)
NexIndex – Auto Table of Contents & SEO Links Security Vulnerabilities
NexIndex – Auto Table of Contents & SEO Links Code Analysis
Bundled Libraries
SQL Query Safety
Output Escaping
NexIndex – Auto Table of Contents & SEO Links Attack Surface
WordPress Hooks 12
Maintenance & Trust
NexIndex – Auto Table of Contents & SEO Links Maintenance & Trust
Maintenance Signals
Community Trust
NexIndex – Auto Table of Contents & SEO Links Alternatives
Heroic Table of Contents
heroic-table-of-contents
Heroic Table of Contents is the easiest way to add a table of contents to your site.
TOP Table Of Contents
top-table-of-contents
Easily creates SEO-friendly table of contents for your blog posts and pages. Offers both Auto and Manual Insert with highly customization options.
LuckyWP Table of Contents
luckywp-table-of-contents
Creates SEO-friendly table of contents for your posts/pages. Works automatically or manually (via shortcode, Gutenberg block or widget).
Rich Table of Contents
rich-table-of-content
RTOC is a table of contents generation plugin from Japan that allows anyone to easily create a table of contents. Equipped with the functions of the c …
F70 Simple Table of Contents
f70-simple-table-of-contents
Display a table of contents in your posts by automatically generated from the headings. No Javascript code, simple to use.
NexIndex – Auto Table of Contents & SEO Links Developer Profile
1 plugin · 0 total installs
How We Detect NexIndex – Auto Table of Contents & SEO Links
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/nexindex/admin/js/nexindex-editor.js/wp-content/plugins/nexindex/admin/js/nexindex-format.js/wp-content/plugins/nexindex/admin/js/nexindex-tinymce.js/wp-content/plugins/nexindex/admin/js/nexindex-editor.js/wp-content/plugins/nexindex/admin/js/nexindex-format.js/wp-content/plugins/nexindex/admin/js/nexindex-tinymce.jsnexindex-editor-js?ver=nexindex-format-js?ver=nexindex_buttonsHTML / DOM Fingerprints
nex-tabsnex-tab-linknex-tab-contentnex-cardskin-selectorskin-itemskin-previewmock-glass+10 moredata-nexindex-settingswindow.nexindex_data