
Table Of Contents Block Security & Risk Analysis
wordpress.org/plugins/table-of-contents-blockAutomatically Add Table of Contents Block for your WordPress Posts & Pages
Is Table Of Contents Block Safe to Use in 2026?
Generally Safe
Score 92/100Table Of Contents Block has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The table-of-contents-block plugin v1.4.1 demonstrates a strong security posture based on the provided static analysis and vulnerability history. The code analysis reveals no dangerous functions, no direct SQL queries without prepared statements, and all output is properly escaped. Crucially, there are no identified taint flows, meaning no unsanitized data is making its way into sensitive operations. The plugin also has a clean vulnerability history with zero known CVEs, indicating a history of secure development practices and diligent patching.
While the absence of any identified vulnerabilities or risky code patterns is a significant positive, the lack of certain security checks like nonce checks on AJAX endpoints (though there are no AJAX endpoints) or explicit permission callbacks on REST API routes (also absent) could be a concern in larger or more complex plugins. However, given the extremely small attack surface of zero entry points reported in this analysis, these omissions do not represent an immediate or significant risk for this specific version. The plugin's strengths lie in its clean code and lack of exploitable patterns.
Overall, this plugin appears to be very secure in its current iteration. The comprehensive use of prepared statements and proper output escaping, combined with no history of vulnerabilities, suggests a well-maintained and secure codebase. The zero attack surface further mitigates any potential risks that might arise from typical plugin interactions. Any future updates should maintain these high standards.
Table Of Contents Block Security Vulnerabilities
Table Of Contents Block Release Timeline
Table Of Contents Block Code Analysis
SQL Query Safety
Output Escaping
Table Of Contents Block Attack Surface
WordPress Hooks 6
Maintenance & Trust
Table Of Contents Block Maintenance & Trust
Maintenance Signals
Community Trust
Table Of Contents Block Alternatives
Table Of Contents Block
wpwing-table-of-contents-block
Adds a custom Table of Contents block.
LuckyWP Table of Contents
luckywp-table-of-contents
Creates SEO-friendly table of contents for your posts/pages. Works automatically or manually (via shortcode, Gutenberg block or widget).
Joli Table Of Contents
joli-table-of-contents
The best Table of Contents plugin for WordPress. Auto or manual insert, Gutenberg Block, beautiful themes, onboarding wizard, and deep customization.
Heroic Table of Contents
heroic-table-of-contents
Heroic Table of Contents is the easiest way to add a table of contents to your site.
TOP Table Of Contents
top-table-of-contents
Easily creates SEO-friendly table of contents for your blog posts and pages. Offers both Auto and Manual Insert with highly customization options.
Table Of Contents Block Developer Profile
46 plugins · 4.0M total installs
How We Detect Table Of Contents Block
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/table-of-contents-block/assets/css/animate.min.css/wp-content/plugins/table-of-contents-block/assets/css/fontawesome/css/all.min.css/wp-content/plugins/table-of-contents-block/assets/js/clipboard.min.js/wp-content/plugins/table-of-contents-block/assets/js/eb-animation-load.js/wp-content/plugins/table-of-contents-block/dist/frontend/index.js/wp-content/plugins/table-of-contents-block/dist/index.js/wp-content/plugins/table-of-contents-block/dist/style.csscreate-block-table-of-content-block-editoressential-blocks-clipboardessential-blocks-eb-animationessential-blocks-toc-frontendtable-of-contents-block/dist/style.css?ver=table-of-contents-block/dist/index.js?ver=table-of-contents-block/assets/js/eb-animation-load.js?ver=table-of-contents-block/assets/js/clipboard.min.js?ver=table-of-contents-block/assets/css/fontawesome/css/all.min.css?ver=table-of-contents-block/assets/css/animate.min.css?ver=table-of-contents-block/dist/frontend/index.js?ver=HTML / DOM Fingerprints
eb-toc-containereb-toc-sticky-lefteb-toc-sticky-righteb-toc-sticky-topeb-toc-sticky-bottomeb-toc-collapsedeb-toc-collapsibleeb-toc-is-stickydata-collapsibledata-initial-collapsedata-is-stickydata-sticky-positiondata-scroll-targetdata-enable-copy-link+13 morewindow.EB_TOC_BLOCK_CONFIG