Toggle Hide/Show Admin Bar Security & Risk Analysis

wordpress.org/plugins/toggle-hide-show-admin-bar

A simple and customizable real-time toggle button to hide/show admin bar in front-end.

10 active installs v1.1.3 PHP 7.4+ WP 5.0+ Updated Jan 28, 2026
admin-bartogglevisibility
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Toggle Hide/Show Admin Bar Safe to Use in 2026?

Generally Safe

Score 100/100

Toggle Hide/Show Admin Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The plugin "toggle-hide-show-admin-bar" v1.1.3 exhibits a strong security posture based on the provided static analysis. The absence of any identified AJAX handlers, REST API routes, shortcodes, or cron events with unprotected entry points is commendable, indicating a minimal attack surface. Furthermore, the code demonstrates good practices by avoiding dangerous functions, utilizing prepared statements for all SQL queries, and properly escaping all identified output. The lack of file operations and external HTTP requests further reduces potential vulnerabilities.

However, a significant concern arises from the absence of nonce checks and the presence of only one capability check. While the plugin may not expose direct vulnerabilities through its limited entry points, the lack of robust authentication and authorization mechanisms on any potential, even if currently non-existent, future entry points is a weakness. The plugin's vulnerability history is also clean, with no recorded CVEs, suggesting a good track record for this version. This indicates that while the current implementation is secure, future updates or additions to the plugin might need more rigorous security considerations for authentication and authorization.

In conclusion, the plugin is currently secure due to its limited functionality and well-implemented code hygiene for existing components. The primary area for improvement lies in strengthening the security controls around any potential future entry points by implementing proper nonce checks and comprehensive capability checks to ensure even greater resilience against evolving threats. The clean vulnerability history is a positive indicator of the developer's attention to security in past versions.

Key Concerns

  • Missing nonce checks
  • Only one capability check
Vulnerabilities
None known

Toggle Hide/Show Admin Bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Toggle Hide/Show Admin Bar Release Timeline

v1.1.3Current
v1.1.2
v1.1.1
v1.1.0
v1.0
Code Analysis
Analyzed Apr 16, 2026

Toggle Hide/Show Admin Bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
10 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped10 total outputs
Attack Surface

Toggle Hide/Show Admin Bar Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 5
actionwp_enqueue_scriptstoggle-admin-bar.php:37
actionwp_footertoggle-admin-bar.php:60
actionadmin_menutoggle-admin-bar.php:72
actionadmin_inittoggle-admin-bar.php:88
actionadmin_enqueue_scriptstoggle-admin-bar.php:168
Maintenance & Trust

Toggle Hide/Show Admin Bar Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 28, 2026
PHP min version7.4
Downloads971

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Toggle Hide/Show Admin Bar Developer Profile

Jorge del Campo Andrade

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Toggle Hide/Show Admin Bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/toggle-hide-show-admin-bar/toggle-admin-bar.css/wp-content/plugins/toggle-hide-show-admin-bar/toggle-admin-bar.js
Script Paths
/wp-content/plugins/toggle-hide-show-admin-bar/libs/font-awesome/5.15.4/css/all.min.css/wp-content/plugins/toggle-hide-show-admin-bar/toggle-admin-bar.css/wp-content/plugins/toggle-hide-show-admin-bar/toggle-admin-bar.js/wp-content/plugins/toggle-hide-show-admin-bar/toggle-admin-bar-color-picker.js
Version Parameters
toggle-hide-show-admin-bar/toggle-admin-bar.css?ver=toggle-hide-show-admin-bar/toggle-admin-bar.js?ver=toggle-hide-show-admin-bar/toggle-admin-bar-color-picker.js?ver=

HTML / DOM Fingerprints

CSS Classes
thsabToggleAdminBarthsab-showthsab-hidethsab-bottom-leftthsab-bottom-rightthsab-always-visiblethsab-hide-partially
Data Attributes
data-default-color
JS Globals
thsabSettings
FAQ

Frequently Asked Questions about Toggle Hide/Show Admin Bar