Simple Cookie Notification Bar Security & Risk Analysis

wordpress.org/plugins/simple-cookie-notification-bar

Displays a simple cookie notification bar on the bottom of the page, customizable colours and texts.

1K active installs v1.5 PHP + WP 3.8+ Updated Sep 8, 2015
cookiescustomizablefixed-barnotificationsresponsive
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Simple Cookie Notification Bar Safe to Use in 2026?

Generally Safe

Score 85/100

Simple Cookie Notification Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 10yr ago
Risk Assessment

The "simple-cookie-notification-bar" plugin v1.5 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any detected dangerous functions, raw SQL queries, or file operations is a positive indicator. Furthermore, the high percentage of properly escaped output (96%) and the lack of external HTTP requests suggest good coding practices for preventing common web vulnerabilities. The plugin also has no recorded vulnerabilities, further bolstering its security reputation.

However, the data reveals a complete absence of nonce and capability checks across all entry points. While the static analysis reports zero entry points (AJAX, REST API, shortcodes, cron events), this is a significant concern if the plugin's functionality were to expand or if any of these entry points were inadvertently introduced or overlooked in the analysis. The lack of these fundamental security mechanisms means that if an entry point were to exist and be accessible, it could potentially be exploited without proper authorization checks.

In conclusion, the plugin demonstrates a solid foundation with its current code, showing a commitment to secure coding standards. The primary weakness lies in the complete absence of authorization checks (nonces and capabilities), which, while not currently exposed via defined entry points, represents a potential future risk if new entry points are added without corresponding security measures. The vulnerability history being clear is a strong positive, but the lack of built-in authorization checks is a notable area for improvement.

Key Concerns

  • No nonce checks on any entry points
  • No capability checks on any entry points
Vulnerabilities
None known

Simple Cookie Notification Bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Cookie Notification Bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
48 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped50 total outputs
Attack Surface

Simple Cookie Notification Bar Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_enqueue_scriptsincludes\class-cookie.php:45
actionwp_footerincludes\class-cookie.php:46
actionscbn_custom_styleincludes\class-cookie.php:47
actionadmin_initsimple-cookie-notification-bar.php:98
actionadmin_menusimple-cookie-notification-bar.php:99
actionadmin_enqueue_scriptssimple-cookie-notification-bar.php:100
Maintenance & Trust

Simple Cookie Notification Bar Maintenance & Trust

Maintenance Signals

WordPress version tested4.3.34
Last updatedSep 8, 2015
PHP min version
Downloads20K

Community Trust

Rating90/100
Number of ratings8
Active installs1K
Developer Profile

Simple Cookie Notification Bar Developer Profile

Lucy Tomas

3 plugins · 2K total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Simple Cookie Notification Bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/simple-cookie-notification-bar/assets/css/admin.css/wp-content/plugins/simple-cookie-notification-bar/assets/js/admin.js/wp-content/plugins/simple-cookie-notification-bar/assets/js/cookie-notification.js
Script Paths
/wp-content/plugins/simple-cookie-notification-bar/assets/js/admin.js/wp-content/plugins/simple-cookie-notification-bar/assets/js/cookie-notification.js
Version Parameters
simple-cookie-notification-bar/assets/css/admin.css?ver=simple-cookie-notification-bar/assets/js/admin.js?ver=simple-cookie-notification-bar/assets/js/cookie-notification.js?ver=

HTML / DOM Fingerprints

CSS Classes
scnb-bar-wrapperscnb-messagescnb-buttonscnb-close-buttonscnb-more-info-button
Data Attributes
data-scnb-background-colordata-scnb-text-colordata-scnb-font-sizedata-scnb-text-aligndata-scnb-border-colordata-scnb-button-border-color
JS Globals
SCNB_JS_OBJECT
FAQ

Frequently Asked Questions about Simple Cookie Notification Bar