
TableOfContent Security & Risk Analysis
wordpress.org/plugins/tableofcontentThis plugin is an easy way to add table of content to your post/page directly or as a widget.
Is TableOfContent Safe to Use in 2026?
Generally Safe
Score 85/100TableOfContent has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "tableofcontent" v1.0.2 plugin exhibits a seemingly strong security posture based on the static analysis provided. The absence of any identified entry points like AJAX handlers, REST API routes, shortcodes, or cron events significantly reduces the potential attack surface. Furthermore, the code signals indicate a lack of dangerous functions, file operations, and external HTTP requests, all of which are positive indicators. The 100% use of prepared statements for SQL queries is a crucial best practice that mitigates SQL injection risks.
Key Concerns
- Output not properly escaped
- No capability checks implemented
- No nonce checks implemented
TableOfContent Security Vulnerabilities
TableOfContent Code Analysis
Output Escaping
TableOfContent Attack Surface
WordPress Hooks 2
Maintenance & Trust
TableOfContent Maintenance & Trust
Maintenance Signals
Community Trust
TableOfContent Alternatives
YAHMAN Add-ons
yahman-add-ons
YAHMAN Add-ons has Multiple functions.
Seo Friendly Table of Contents
seo-friendly-table-of-contents
A simple seo friendly table of contents plugin that does not require editing in your themes source code.
Author: António Andrade
wp-table-of-paginated-contents
Handles naming of each post page through a TinyMCE button and produces a Table of Contents for the said post.
WP Section Index
wp-section-index
Create a table of contents in a widget for the current page or blog post, using headings from the content.
Simple Adsense
simple-adsense
Gives you the possiblitity to add your ad-code anywhere. This is a simple plugin compared to those other adsense managers.
TableOfContent Developer Profile
1 plugin · 20 total installs
How We Detect TableOfContent
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/tableofcontent/style.css/wp-content/plugins/tableofcontent/widget.js/wp-content/plugins/tableofcontent/widget.jstableofcontent/style.css?ver=tableofcontent/widget.js?ver=HTML / DOM Fingerprints
TB_LevelTB_LinkTBC_ContainerTBC_ContainerTitleTBC_ContentTBW_ContainerTBW_ContainerTitleTBW_Content<!-- TB_Main-->id='TBC_Container'id='TBC_ContainerTitle'id='TBC_Content'id='TBW_Container'id='TBW_ContainerTitle'id='TBW_Content'+1 moreTableContentData<div id='TBC_Container'> <div id='TBC_ContainerTitle'><div id='TBW_Container'> <div id='TBW_ContainerTitle'>