Top Bar Links, add custom links to the admin top bar Security & Risk Analysis

wordpress.org/plugins/top-bar-links

Top Bar Links allows you to add custom links to your admin top bar.

100 active installs v1.0.6 PHP 5.6+ WP 4.6+ Updated Dec 10, 2025
productivitytop-bar-links
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Top Bar Links, add custom links to the admin top bar Safe to Use in 2026?

Generally Safe

Score 100/100

Top Bar Links, add custom links to the admin top bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The "top-bar-links" plugin version 1.0.6 demonstrates a strong security posture based on the provided static analysis. It adheres to several key security best practices, including the exclusive use of prepared statements for all SQL queries, comprehensive output escaping for all identified outputs, and a lack of file operations or external HTTP requests. The presence of nonce and capability checks on its single AJAX entry point is also commendable, indicating a commitment to preventing unauthorized actions.

The taint analysis further reinforces this positive outlook, revealing no flows with unsanitized paths, critical, or high severities. This suggests that user-supplied data, if it were to interact with these flows, is being handled safely. The plugin also boasts a clean vulnerability history with no known CVEs, which generally implies a well-maintained and secure codebase.

While the plugin exhibits excellent security fundamentals, the total entry points are very low, with only one AJAX handler. This small attack surface, coupled with the existing security measures, makes it difficult to identify significant weaknesses. However, it's always prudent to remember that even with strong static analysis, the possibility of zero-day vulnerabilities or issues arising from complex interactions within a larger WordPress environment cannot be entirely ruled out.

Vulnerabilities
None known

Top Bar Links, add custom links to the admin top bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Top Bar Links, add custom links to the admin top bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
36 escaped
Nonce Checks
3
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped36 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
eos_quil_save_button (admin\ql-admin.php:139)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Top Bar Links, add custom links to the admin top bar Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_eos_quil_save_settingsadmin\ql-ajax.php:9
WordPress Hooks 7
actionadmin_enqueue_scriptsadmin\ql-admin.php:14
actionadmin_menuadmin\ql-admin.php:33
actionwp_create_nav_menuadmin\ql-admin.php:91
actionwp_delete_nav_menuadmin\ql-admin.php:112
actionafter_setup_themetop-bar-links.php:31
filterwp_nav_menu_argstop-bar-links.php:34
actionadmin_bar_menutop-bar-links.php:59
Maintenance & Trust

Top Bar Links, add custom links to the admin top bar Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 10, 2025
PHP min version5.6
Downloads5K

Community Trust

Rating100/100
Number of ratings3
Active installs100
Developer Profile

Top Bar Links, add custom links to the admin top bar Developer Profile

Jose Mortellaro

56 plugins · 26K total installs

87
trust score
Avg Security Score
99/100
Avg Patch Time
62 days
View full developer profile
Detection Fingerprints

How We Detect Top Bar Links, add custom links to the admin top bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/top-bar-links/assets/js/quick-links-admin.js/wp-content/plugins/top-bar-links/assets/css/quick-links-admin.css
Script Paths
assets/js/quick-links-admin.js
Version Parameters
top-bar-links/assets/js/quick-links-admin.js?ver=top-bar-links/assets/css/quick-links-admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
eos-quil-setts
Data Attributes
data-eos-quil-menu-parentdata-eos-quil-menu-id
JS Globals
eos_quick_links_admin_obj
FAQ

Frequently Asked Questions about Top Bar Links, add custom links to the admin top bar