
Sticky Header by ThematoSoup Security & Risk Analysis
wordpress.org/plugins/sticky-headerSticky Header by ThematoSoup allows you to add sticky header to any WordPress theme.
Is Sticky Header by ThematoSoup Safe to Use in 2026?
Generally Safe
Score 85/100Sticky Header by ThematoSoup has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The sticky-header v1.2.2 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly limits the potential attack surface. Furthermore, the code signals indicate good practices with all SQL queries utilizing prepared statements and no dangerous functions, file operations, or external HTTP requests being present. The lack of recorded vulnerabilities in its history is a significant positive indicator.
However, there are areas for improvement. The output escaping is only at 50%, meaning half of the output points might be vulnerable to Cross-Site Scripting (XSS) if dynamic data is not properly sanitized before output. The absence of nonce checks and capability checks across the board, while not directly leading to vulnerabilities in this specific version due to the lack of entry points, represents a potential weakness if the plugin were to evolve and introduce such points without these security measures. The overall conclusion is that the plugin is currently in a secure state due to a limited attack surface and good SQL handling, but the insufficient output escaping and lack of general security checks on potential future entry points present minor risks.
Key Concerns
- Output escaping is only 50% proper
- No nonce checks on potential entry points
- No capability checks on potential entry points
Sticky Header by ThematoSoup Security Vulnerabilities
Sticky Header by ThematoSoup Code Analysis
Output Escaping
Sticky Header by ThematoSoup Attack Surface
WordPress Hooks 9
Maintenance & Trust
Sticky Header by ThematoSoup Maintenance & Trust
Maintenance Signals
Community Trust
Sticky Header by ThematoSoup Alternatives
Fixed And Sticky Header
fixed-and-sticky-header
This plugin will made your header or menu fixed and sticky.
Fixed Menu Anchor
fixed-menu-anchor
If you are using a sticky, fixed menu in your WP theme, this plugin is the best to deal with it overlapping anchored content.
Simple Sticky Header Menu
simple-sticky-header-menu
Make website header sticky by using this plugin, very simple way to use, just install plugin and activate it thats all. Also there is an option to sel …
My Sticky Bar – Floating Notification Bar & Sticky Header (formerly myStickymenu)
mystickymenu
Create a welcome notification bar for your website. Also, My Sticky Bar plugin can make your menu or header sticky to the top when scrolled 📌
Sticky Menu & Sticky Header
sticky-menu-or-anything-on-scroll
Sticky Menu or Sticky Header sticks elements at the top of the screen when you scroll, or create a floating sticky menu or fixed widget.
Sticky Header by ThematoSoup Developer Profile
5 plugins · 2K total installs
How We Detect Sticky Header by ThematoSoup
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/sticky-header/css/public.css/wp-content/plugins/sticky-header/js/public.js/wp-content/plugins/sticky-header/js/public.min.js/wp-content/plugins/sticky-header/js/public.js/wp-content/plugins/sticky-header/js/public.min.jsplugins/sticky-header/css/public.css?ver=plugins/sticky-header/js/public.js?ver=plugins/sticky-header/js/public.min.js?ver=HTML / DOM Fingerprints
thsp-sticky-headerthsp-sticky-header-innerStickyHeaderParams