TID Scroll to Top Security & Risk Analysis

wordpress.org/plugins/tid-scroll-to-top

TID Scroll to top plugin will help to go back to top clicking the top icon.

100 active installs v2.0.0 PHP 7.2+ WP 5.2+ Updated Feb 25, 2023
back-to-topbuttonjqueryscrollscrool-to-top
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is TID Scroll to Top Safe to Use in 2026?

Generally Safe

Score 85/100

TID Scroll to Top has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The tid-scroll-to-top plugin version 2.0.0 exhibits a generally good security posture based on the provided static analysis. The complete absence of any identified CVEs in its vulnerability history, coupled with the lack of dangerous functions, file operations, and external HTTP requests, suggests a history of responsible development and patching. Furthermore, the analysis shows that all SQL queries are properly prepared, and there are no identified taint flows, indicating a low risk of common injection vulnerabilities. The limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes, is also a positive sign. However, a significant concern is the complete lack of nonce checks and capability checks across all entry points, even though the current entry point count is zero. This absence, if the plugin were to evolve and introduce new entry points without proper security checks, could create a considerable risk for introducing vulnerabilities in the future. Additionally, while most output is escaped, the 73% proper escaping leaves room for potential Cross-Site Scripting (XSS) vulnerabilities if the remaining 27% of outputs are user-controlled or contain sensitive data.

Key Concerns

  • Missing nonce checks on entry points
  • Missing capability checks on entry points
  • Potential for XSS due to unescaped output
Vulnerabilities
None known

TID Scroll to Top Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

TID Scroll to Top Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
11 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

73% escaped15 total outputs
Attack Surface

TID Scroll to Top Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 7
actionadmin_menutid-scroll-to-top.php:23
actionadmin_enqueue_scriptstid-scroll-to-top.php:35
actionwp_enqueue_scriptstid-scroll-to-top.php:42
actionwp_enqueue_scriptstid-scroll-to-top.php:51
actionwp_footertid-scroll-to-top.php:146
actionwp_headtid-scroll-to-top.php:182
actionadmin_inittid-scroll-to-top.php:212
Maintenance & Trust

TID Scroll to Top Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedFeb 25, 2023
PHP min version7.2
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

TID Scroll to Top Developer Profile

Techit Dev

2 plugins · 100 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect TID Scroll to Top

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/tid-scroll-to-top/css/tid-stt-admin-style.css/wp-content/plugins/tid-scroll-to-top/css/tid-stt-style.css/wp-content/plugins/tid-scroll-to-top/js/tid-stt-plugin.js
Script Paths
/wp-content/plugins/tid-scroll-to-top/js/tid-stt-plugin.js
Version Parameters
tid-stt-styletid-stt-plugin-script

HTML / DOM Fingerprints

CSS Classes
tid-main-areatid-body-areatid-commontid-sidebar-area
Data Attributes
name="tid-primary-color"name="tid-button-position"name="tid-rounded-corner"value="true"value="false"name="tid-primary-color"+2 more
JS Globals
tid_stt_scroll_script
FAQ

Frequently Asked Questions about TID Scroll to Top