T4P Dashboard Notes Security & Risk Analysis

wordpress.org/plugins/t4p-dashboard-notes

Add colored, formatted dashboard notes with titles and drag-and-drop widgets for internal admin documentation and reminders.

10 active installs v1.0.4 PHP 7.4+ WP 5.6+ Updated Nov 26, 2025
admin-notesdashboarddocumentationnotessticky-notes
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is T4P Dashboard Notes Safe to Use in 2026?

Generally Safe

Score 100/100

T4P Dashboard Notes has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The 't4p-dashboard-notes' plugin version 1.0.4 exhibits a strong security posture based on the provided static analysis. The plugin appears to have a minimal attack surface, with no reported AJAX handlers, REST API routes, shortcodes, or cron events exposed. This lack of direct entry points significantly reduces the likelihood of external attacks. Furthermore, the code analysis reveals a positive trend in secure coding practices. All SQL queries are prepared, indicating protection against SQL injection vulnerabilities. A healthy percentage of output is properly escaped, mitigating cross-site scripting (XSS) risks. The presence of nonce and capability checks suggests a conscious effort to enforce authorization and integrity for any internal operations.

The vulnerability history for this plugin is also remarkably clean, with no known CVEs, recent or historical. This, combined with the absence of critical or high-severity taint flows in the static analysis, points to a plugin that has likely undergone thorough security review or is simply not a target for attackers due to its limited functionality or scope. The plugin's strengths lie in its clean code, absence of known vulnerabilities, and robust use of security features like prepared statements and escaping. A potential area for slight concern, though not directly indicative of a vulnerability in this version, is the 24% of outputs that are not properly escaped. While the attack surface is currently zero, this could become a risk if new entry points are introduced in future versions without addressing these unescaped outputs.

Key Concerns

  • Output not properly escaped
Vulnerabilities
None known

T4P Dashboard Notes Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

T4P Dashboard Notes Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
8
25 escaped
Nonce Checks
3
Capability Checks
6
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

76% escaped33 total outputs
Attack Surface

T4P Dashboard Notes Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_initt4p-dashboard-notes.php:27
actionwp_dashboard_setupt4p-dashboard-notes.php:28
actionadmin_enqueue_scriptst4p-dashboard-notes.php:29
actionadmin_menut4p-dashboard-notes.php:30
actionadmin_post_adn_addt4p-dashboard-notes.php:32
actionadmin_post_adn_savet4p-dashboard-notes.php:33
actionadmin_post_adn_deletet4p-dashboard-notes.php:34
filtersafe_style_csst4p-dashboard-notes.php:36
actionplugins_loadedt4p-dashboard-notes.php:296
Maintenance & Trust

T4P Dashboard Notes Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 26, 2025
PHP min version7.4
Downloads155

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

T4P Dashboard Notes Developer Profile

sebastiantrainers4professionals

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect T4P Dashboard Notes

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/t4p-dashboard-notes/js/t4p-dashboard-notes.js/wp-content/plugins/t4p-dashboard-notes/css/t4p-dashboard-notes.css
Script Paths
/wp-content/plugins/t4p-dashboard-notes/js/t4p-dashboard-notes.js
Version Parameters
t4p-dashboard-notes/js/t4p-dashboard-notes.js?ver=t4p-dashboard-notes/css/t4p-dashboard-notes.css?ver=

HTML / DOM Fingerprints

CSS Classes
adn-note-actionsadn-toggleadn-viewadn-editadn-delete-btnadn-note-viewadn-note-contentadn-note-edit+2 more
Data Attributes
data-idata-bg
JS Globals
window.wp_editor
FAQ

Frequently Asked Questions about T4P Dashboard Notes