ToolPress : All Your WordPress Tools in One Place Security & Risk Analysis

wordpress.org/plugins/toolpress

ToolPress is a powerful WordPress plugin that allows you to easily manage and enhance your website with a variety of tools and features.

0 active installs v1.0.7 PHP 7.0+ WP 6.0+ Updated Nov 16, 2025
analyticstrackingutility
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ToolPress : All Your WordPress Tools in One Place Safe to Use in 2026?

Generally Safe

Score 100/100

ToolPress : All Your WordPress Tools in One Place has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6mo ago
Risk Assessment

The "toolpress" v1.0.7 plugin exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates excellent adherence to secure coding practices by implementing prepared statements for all SQL queries and properly escaping the vast majority of its output. The absence of dangerous functions, file operations, and external HTTP requests further contributes to its secure design. Crucially, all identified entry points (REST API routes) are protected by permission callbacks, indicating a robust approach to access control.

The lack of any reported vulnerabilities in its history, coupled with zero recorded CVEs, is a significant positive indicator. This suggests a mature and well-maintained plugin that has likely undergone thorough security scrutiny. The absence of critical or high-severity taint analysis findings further reinforces the perception of a secure codebase with no apparent pathways for malicious data injection or manipulation.

While the overall security is commendable, a minor area for attention is the absence of nonce checks on the identified entry points, despite them having permission callbacks. While permission callbacks are a primary defense, nonces provide an additional layer of protection against CSRF attacks. However, given the comprehensive security measures in place and the clean vulnerability history, the plugin remains a low-risk option.

Key Concerns

  • Missing nonce checks on REST API routes
Vulnerabilities
None known

ToolPress : All Your WordPress Tools in One Place Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

ToolPress : All Your WordPress Tools in One Place Release Timeline

v1.0.7Current
v1.0.6
v1.0.5
v1.0.4
v1.0.3
Code Analysis
Analyzed Apr 16, 2026

ToolPress : All Your WordPress Tools in One Place Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
50 escaped
Nonce Checks
0
Capability Checks
22
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

98% escaped51 total outputs
Attack Surface

ToolPress : All Your WordPress Tools in One Place Attack Surface

Entry Points2
Unprotected0

REST API Routes 2

GET/wp-json/toolpress/v1/tool-typesincludes/rest/class-tool-types-api.php:28
GET/wp-json/toolpress/v1/tool-types/(?P<type>[a-zA-Z0-9_-]+)includes/rest/class-tool-types-api.php:40
WordPress Hooks 67
actionadmin_enqueue_scriptsincludes/admin/class-assets.php:21
actionadmin_menuincludes/admin/class-menu.php:18
actionadmin_menuincludes/admin/class-menu.php:19
actionrest_after_insert_tp_toolsincludes/admin/class-on-tool-save.php:21
filterrest_pre_insert_tp_toolsincludes/admin/class-on-tool-save.php:22
actioninitincludes/admin/class-post-types.php:21
actioninitincludes/admin/class-tp-components.php:21
actioninitincludes/admin/class-tp-react-hooks.php:21
actionwpincludes/frontend/class-run-tools.php:21
actiontemplate_redirectincludes/frontend/class-tool-preview.php:21
filtershow_admin_barincludes/frontend/class-tool-preview.php:42
actioninitincludes/rest/class-register-meta.php:21
filterrest_tp_variables_queryincludes/rest/class-register-meta.php:22
actionrest_api_initincludes/rest/class-tool-types-api.php:21
actionrest_api_initincludes/rest/class-tools-api.php:29
actiontoolpress_run_toolincludes/tools/class-bootstrap-icons.php:21
filtertoolpress_register_tool_typesincludes/tools/class-bootstrap-icons.php:22
actionwp_enqueue_scriptsincludes/tools/class-bootstrap-icons.php:36
actiontoolpress_run_toolincludes/tools/class-bootstrap.php:21
filtertoolpress_register_tool_typesincludes/tools/class-bootstrap.php:22
actionwp_enqueue_scriptsincludes/tools/class-bootstrap.php:29
actiontoolpress_run_toolincludes/tools/class-custom-css.php:21
filtertp_tool_settings_meta_propertiesincludes/tools/class-custom-css.php:22
filtertoolpress_register_tool_typesincludes/tools/class-custom-css.php:23
actiontoolpress_run_toolincludes/tools/class-custom-html.php:21
filtertp_tool_settings_meta_propertiesincludes/tools/class-custom-html.php:22
filtertoolpress_register_tool_typesincludes/tools/class-custom-html.php:23
actiontoolpress_run_toolincludes/tools/class-custom-js.php:21
filtertp_tool_settings_meta_propertiesincludes/tools/class-custom-js.php:22
filtertoolpress_register_tool_typesincludes/tools/class-custom-js.php:23
actiontoolpress_run_toolincludes/tools/class-font-awesome.php:21
filtertoolpress_register_tool_typesincludes/tools/class-font-awesome.php:22
actionwp_enqueue_scriptsincludes/tools/class-font-awesome.php:36
actiontoolpress_run_toolincludes/tools/class-google-tag-manager.php:26
filtertoolpress_register_tool_typesincludes/tools/class-google-tag-manager.php:27
actiontoolpress_pro_admin_page_renderincludes/tools/class-google-tag-manager.php:28
filtertp_tool_settings_meta_propertiesincludes/tools/class-google-tag-manager.php:29
actionwp_headincludes/tools/class-google-tag-manager.php:43
actionwp_body_openincludes/tools/class-google-tag-manager.php:51
actiontoolpress_run_toolincludes/tools/class-google-tag.php:26
filtertoolpress_register_tool_typesincludes/tools/class-google-tag.php:27
actiontoolpress_pro_admin_page_renderincludes/tools/class-google-tag.php:28
filtertp_tool_settings_meta_propertiesincludes/tools/class-google-tag.php:29
actionwp_headincludes/tools/class-google-tag.php:43
actiontoolpress_run_toolincludes/tools/class-hubspot-tracking.php:21
filtertoolpress_register_tool_typesincludes/tools/class-hubspot-tracking.php:22
actiontoolpress_pro_admin_page_renderincludes/tools/class-hubspot-tracking.php:23
filtertp_tool_settings_meta_propertiesincludes/tools/class-hubspot-tracking.php:24
actionwp_enqueue_scriptsincludes/tools/class-hubspot-tracking.php:38
filterscript_loader_tagincludes/tools/class-hubspot-tracking.php:45
actiontoolpress_run_toolincludes/tools/class-jquery.php:22
filtertoolpress_register_tool_typesincludes/tools/class-jquery.php:23
actionwp_enqueue_scriptsincludes/tools/class-jquery.php:37
filtertoolpress_register_tool_typesincludes/tools/class-schema-org.php:21
actiontoolpress_run_toolincludes/tools/class-tawk-to-chat.php:21
filtertp_tool_settings_meta_propertiesincludes/tools/class-tawk-to-chat.php:22
filtertoolpress_register_tool_typesincludes/tools/class-tawk-to-chat.php:23
actionwp_enqueue_scriptsincludes/tools/class-tawk-to-chat.php:37
filterscript_loader_tagincludes/tools/class-tawk-to-chat.php:44
actiontoolpress_tool_previewincludes/tools/whatsapp-chat/class-whatsapp-chat-preview.php:21
actioninitincludes/tools/whatsapp-chat/class-whatsapp-chat-public.php:21
actiontoolpress_run_toolincludes/tools/whatsapp-chat/class-whatsapp-chat.php:24
filtertp_tool_settings_meta_propertiesincludes/tools/whatsapp-chat/class-whatsapp-chat.php:25
filtertoolpress_register_tool_typesincludes/tools/whatsapp-chat/class-whatsapp-chat.php:26
actiontoolpress_pro_admin_page_renderincludes/tools/whatsapp-chat/class-whatsapp-chat.php:27
actionwp_enqueue_scriptsincludes/tools/whatsapp-chat/class-whatsapp-chat.php:238
actionwp_footerincludes/tools/whatsapp-chat/class-whatsapp-chat.php:256
Maintenance & Trust

ToolPress : All Your WordPress Tools in One Place Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 16, 2025
PHP min version7.0
Downloads381

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

ToolPress : All Your WordPress Tools in One Place Developer Profile

Rakesh Lawaju (Racase)

5 plugins · 60 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ToolPress : All Your WordPress Tools in One Place

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/toolpress/assets/css/toolpress-admin-dashboard.css/wp-content/plugins/toolpress/assets/js/toolpress-admin-dashboard.js
Script Paths
/wp-content/plugins/toolpress/assets/js/toolpress-admin-dashboard.js
Version Parameters
toolpress/assets/css/toolpress-admin-dashboard.css?ver=toolpress/assets/js/toolpress-admin-dashboard.js?ver=

HTML / DOM Fingerprints

CSS Classes
toolpress-admin
Data Attributes
id="toolpress-admin"
FAQ

Frequently Asked Questions about ToolPress : All Your WordPress Tools in One Place