Stepped Content – Organize Content into Step-by-Step Format Security & Risk Analysis

wordpress.org/plugins/stepped-content

A powerful Gutenberg plugin for WordPress, revolutionizes content presentation. Seamlessly organize your information into interactive steps or tabs.

100 active installs v1.0.6 PHP 7.1+ WP 6.5+ Updated Mar 30, 2026
blockdocumentationgutenberg-blocksteppedstepped-content
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Stepped Content – Organize Content into Step-by-Step Format Safe to Use in 2026?

Generally Safe

Score 100/100

Stepped Content – Organize Content into Step-by-Step Format has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "stepped-content" plugin v1.0.6 demonstrates a strong security posture based on the provided static analysis. The absence of any AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the plugin's attack surface. Furthermore, the code signals are overwhelmingly positive, showing no dangerous functions, all SQL queries using prepared statements, and 100% proper output escaping. The presence of nonce checks, though not universally applied to all potential entry points (which are none in this case), is a good practice. The lack of any recorded vulnerabilities in its history, including critical or high-severity issues, further reinforces its current security standing.

While the static analysis reveals an impressively clean codebase with no identified taint flows or direct security vulnerabilities, it's important to acknowledge that the plugin has a very minimal attack surface. This could mean that the plugin is very simple or that its functionality is entirely contained within existing WordPress hooks or filters not directly exposed as entry points in this analysis. The absence of capability checks, although not directly leading to a deduction due to the lack of entry points, is a consideration for future development should new entry points be introduced.

In conclusion, "stepped-content" v1.0.6 appears to be a highly secure plugin, adhering to best practices and showing no immediate threats from the provided data. The strengths lie in its minimal attack surface, secure coding practices regarding SQL and output, and a clean vulnerability history. The only minor area for future consideration is ensuring capability checks are in place if the plugin's functionality expands to include new, user-facing interaction points.

Vulnerabilities
None known

Stepped Content – Organize Content into Step-by-Step Format Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Stepped Content – Organize Content into Step-by-Step Format Release Timeline

v1.0.6Current
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

Stepped Content – Organize Content into Step-by-Step Format Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
5 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius

Output Escaping

100% escaped5 total outputs
Attack Surface

Stepped Content – Organize Content into Step-by-Step Format Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menuincludes\admin\SubMenu.php:8
actioninitindex.php:40
actionadmin_enqueue_scriptsindex.php:41
actionenqueue_block_editor_assetsindex.php:42
filterplugin_action_linksindex.php:44
filterdefault_titleindex.php:45
filterdefault_contentindex.php:46
Maintenance & Trust

Stepped Content – Organize Content into Step-by-Step Format Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 30, 2026
PHP min version7.1
Downloads5K

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

Stepped Content – Organize Content into Step-by-Step Format Developer Profile

colorlibplugins

121 plugins · 740K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
130 days
View full developer profile
Detection Fingerprints

How We Detect Stepped Content – Organize Content into Step-by-Step Format

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/stepped-content/build/admin/dashboard.css/wp-content/plugins/stepped-content/build/admin/dashboard.js/wp-content/plugins/stepped-content/build/content.js/wp-content/plugins/stepped-content/build/step.js
Script Paths
/wp-content/plugins/stepped-content/build/admin/dashboard.js
Version Parameters
stepped-content/build/admin/dashboard.css?ver=stepped-content/build/admin/dashboard.js?ver=stepped-content/build/content.js?ver=stepped-content/build/step.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-info
JS Globals
stppipecheckstppricingurl
FAQ

Frequently Asked Questions about Stepped Content – Organize Content into Step-by-Step Format