
Steve's Attributes Security & Risk Analysis
wordpress.org/plugins/steves-attributesExtends Gutenberg blocks to easily add custom attributes to links in various blocks without resorting to custom HTML.
Is Steve's Attributes Safe to Use in 2026?
Generally Safe
Score 100/100Steve's Attributes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The steves-attributes plugin v1.1.0 demonstrates a strong security posture based on the provided static analysis. There are no identified entry points like AJAX handlers, REST API routes, or shortcodes that are exposed to potential attackers. Furthermore, the code signals indicate a lack of dangerous functions, all SQL queries use prepared statements, and all identified output is properly escaped. The absence of file operations, external HTTP requests, and reliance on secure WordPress core functions like nonce and capability checks further bolsters its security. The vulnerability history also shows no recorded CVEs, suggesting a consistently secure development history for this plugin.
While the static analysis reveals no immediate vulnerabilities, the complete absence of identified entry points is unusual for a plugin. This could indicate a very niche functionality or that the plugin relies entirely on hooks and filters that are triggered by other plugins or themes. The lack of explicit capability checks on potential but not-yet-identified entry points could be a concern if the plugin's functionality were to evolve to include user-facing interactions that require authorization. However, based solely on the provided data, there are no concrete vulnerabilities detected, presenting a low-risk profile.
In conclusion, steves-attributes v1.1.0 appears to be a highly secure plugin with robust coding practices. The absence of known vulnerabilities and the strong adherence to secure coding principles in the static analysis are commendable. The only potential area for observation would be if the plugin's scope or functionality expands, requiring reassessment of entry point security. As it stands, the plugin presents a very low security risk.
Steve's Attributes Security Vulnerabilities
Steve's Attributes Code Analysis
Output Escaping
Steve's Attributes Attack Surface
WordPress Hooks 2
Maintenance & Trust
Steve's Attributes Maintenance & Trust
Maintenance Signals
Community Trust
Steve's Attributes Alternatives
Attributes for Blocks
attributes-for-blocks
Allows to add HTML attributes to Gutenberg blocks.
Custom Anchor Block
custom-anchor-block
Add customizable anchor links as text or buttons with custom colors to create smooth in-page navigation in WordPress.
Spectra Gutenberg Blocks – Website Builder for the Block Editor
ultimate-addons-for-gutenberg
Power-up Gutenberg with advanced blocks for faster website creation. Build your WordPress website effortlessly using powerful building blocks!
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor
kadence-blocks
20+ AI-powered Gutenberg Blocks with endless options, enabling top-notch efficiency for high-performance dynamic website creation.
Extendify
extendify
The best WordPress templates, pattern, and layout library with 1,000+ designs built for the Gutenberg block editor.
Steve's Attributes Developer Profile
2 plugins · 0 total installs
How We Detect Steve's Attributes
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/steves-attributes/steves-attributes.css/wp-content/plugins/steves-attributes/steves-attributes.js/wp-content/plugins/steves-attributes/steves-attributes.jssteves-attributes.js?ver=steves-attributes.css?ver=HTML / DOM Fingerprints
customLinkAttrs