Table of Contents by DMUK Security & Risk Analysis

wordpress.org/plugins/table-of-contents-by-dmuk

Adds a Table of Contents to posts and pages based on H2 to H6 headings.

0 active installs v2.0.1 PHP + WP 5.6+ Updated Mar 7, 2025
contentsindextabletable-of-contentstoc
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Table of Contents by DMUK Safe to Use in 2026?

Generally Safe

Score 92/100

Table of Contents by DMUK has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "table-of-contents-by-dmuk" plugin version 2.0.1 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is commendable. Furthermore, all identified output is properly escaped, and the presence of a nonce check is a positive indicator of security awareness. The plugin also boasts a clean vulnerability history with no recorded CVEs, suggesting a well-maintained and secure codebase over time.

However, the static analysis reveals a complete lack of capability checks and no detected taint flows. While the absence of identified taint flows is good, the lack of capability checks on any potential entry points (though none were identified) could represent a theoretical risk if new entry points were inadvertently introduced without proper authorization checks. The zero-day attack surface is also a positive, but it's important to note that this is based on current analysis and new vulnerabilities can always emerge.

In conclusion, the plugin appears to be very secure and developed with security best practices in mind. The lack of historical vulnerabilities further reinforces this assessment. The only minor area for potential improvement, albeit theoretical given the current data, would be to ensure robust capability checks are in place for any future additions or potential entry points.

Vulnerabilities
None known

Table of Contents by DMUK Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Table of Contents by DMUK Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
6 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped6 total outputs
Attack Surface

Table of Contents by DMUK Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadd_meta_boxestable-of-contents-by-dmuk.php:32
actionsave_posttable-of-contents-by-dmuk.php:74
actionwp_enqueue_scriptstable-of-contents-by-dmuk.php:91
filterthe_contenttable-of-contents-by-dmuk.php:155
actionwp_enqueue_scriptstable-of-contents-by-dmuk.php:168
filterplugin_row_metatable-of-contents-by-dmuk.php:183
Maintenance & Trust

Table of Contents by DMUK Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 7, 2025
PHP min version
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Table of Contents by DMUK Developer Profile

Kerry Matthews

3 plugins · 0 total installs

91
trust score
Avg Security Score
95/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Table of Contents by DMUK

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/table-of-contents-by-dmuk/dmuk_toc_main_style.css/wp-content/plugins/table-of-contents-by-dmuk/dmuk_toc_toggle.js
Script Paths
dmuk_toc_toggle.js
Version Parameters
dmuk_toc_main_style.css?ver=dmuk_toc_toggle.js?ver=

HTML / DOM Fingerprints

CSS Classes
dmuk_toc_table_headingdmuk_toc_toggle_buttondmuk_toc_content_wrapperdmuk-toc-level-2dmuk-toc-level-3dmuk-toc-level-4dmuk-toc-level-5dmuk-toc-level-6
HTML Comments
<!-- Start Table of Contents --><!-- End Table of Contents -->
Data Attributes
id="dmuk_toc_display_table"
FAQ

Frequently Asked Questions about Table of Contents by DMUK