
Sticky Copy Button for Code Blocks Security & Risk Analysis
wordpress.org/plugins/stick-copy-button-codeblockAdds a floating "Copy" button to every code block, with extensive styling options, optional line numbers, max-height control, and custom CSS support.
Is Sticky Copy Button for Code Blocks Safe to Use in 2026?
Generally Safe
Score 100/100Sticky Copy Button for Code Blocks has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "stick-copy-button-codeblock" plugin v1.5.1 demonstrates a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, the complete coverage of output escaping and the lack of any taint analysis findings suggest a well-written and secure codebase concerning common vulnerabilities. The plugin also has no recorded vulnerability history, which reinforces its current security standing.
However, a notable concern arises from the complete lack of authorization checks (capability checks and nonce checks) across all identified entry points, even though the attack surface is currently reported as zero. While there are no active AJAX handlers, REST API routes, or shortcodes, the absence of these fundamental security mechanisms means that if any such entry points were introduced in future versions without proper checks, they would be immediately vulnerable. This, coupled with the fact that there are no explicit capability checks, means that even unauthenticated users could potentially trigger any future functionality if it were to be added without proper access controls.
In conclusion, the plugin is currently very secure with no identified vulnerabilities or code-level risks. Its strength lies in its clean code and lack of common insecure practices. The primary weakness is the complete absence of authorization checks, which, while not a current problem, represents a significant potential risk for future development if not addressed proactively.
Key Concerns
- No capability checks implemented
- No nonce checks implemented
Sticky Copy Button for Code Blocks Security Vulnerabilities
Sticky Copy Button for Code Blocks Release Timeline
Sticky Copy Button for Code Blocks Code Analysis
Output Escaping
Sticky Copy Button for Code Blocks Attack Surface
WordPress Hooks 3
Maintenance & Trust
Sticky Copy Button for Code Blocks Maintenance & Trust
Maintenance Signals
Community Trust
Sticky Copy Button for Code Blocks Alternatives
Copy Anything to Clipboard for WordPress – Copy Button, Copy Text & Copy Code
copy-the-code
Copy Anything to Clipboard is the #1 WordPress copy-to-clipboard plugin trusted by 10,000+ active websites with 342,151+ downloads 🚀.
kontur Copy Code Button
kontur-copy-code-button
Add your own 'kontur Copy Code Button' with your own icon, text, class, color and 'pre' background. Works as well with the Gutenbe …
Code Block Copy Button
code-block-copy-button
Add a customizable copy button to code blocks for fast, one-click copying.
Copy URL Button with Tooltip
copy-url-button-with-tooltip
A simple plugin that adds a shortcode to copy the current page URL with a tooltip message. Just use [copy_url_button].
WP-Clippy
wp-clippy
Adds a flash button that copies the value of an element or string to the clipboard when clicked.
Sticky Copy Button for Code Blocks Developer Profile
8 plugins · 140 total installs
How We Detect Sticky Copy Button for Code Blocks
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/stick-copy-button-codeblock/style.css/wp-content/plugins/stick-copy-button-codeblock/js/script.js/wp-content/plugins/stick-copy-button-codeblock/js/script.jsstick-copy-button-codeblock/style.css?ver=stick-copy-button-codeblock/js/script.js?ver=HTML / DOM Fingerprints
copy-code-btncode-block-wrappercode-block-wrapper predata-copy-textdata-copied-textkasuga_scbc_settings