Toucan – Gutenberg Color Palette Security & Risk Analysis

wordpress.org/plugins/toucan-color-palette

Toucan - Gutenberg Color Palette is a simple plugin that gives administrators the ability to choose which colors are available in the Gutenberg editor …

10 active installs v1.0 PHP 5.4+ WP 5.0+ Updated Dec 31, 2019
color-palettecolor-pickergutenbergtheme-support
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Toucan – Gutenberg Color Palette Safe to Use in 2026?

Generally Safe

Score 85/100

Toucan – Gutenberg Color Palette has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The Toucan Color Palette plugin v1.0 exhibits a remarkably clean static analysis profile, with no identified entry points such as AJAX handlers, REST API routes, shortcodes, or cron events. The absence of dangerous functions, file operations, and external HTTP requests further strengthens its security posture. Crucially, all SQL queries are properly prepared, and all output is correctly escaped, indicating strong adherence to secure coding practices in these areas. The vulnerability history is also entirely clear, with no recorded CVEs, suggesting a mature and secure development process or a very low profile with minimal prior scrutiny. However, the complete lack of nonce checks and capability checks is a significant concern. While the current attack surface is zero, any future addition of functionality without these fundamental security measures would immediately introduce vulnerabilities. The absence of taint analysis data might indicate a very small codebase or that the analysis tool did not find any data flows to examine, which is positive but also leaves a blind spot if the tool's capabilities are limited. Overall, Toucan Color Palette v1.0 presents as a secure plugin due to its current lack of exposed functionality and adherence to core secure coding principles for existing code. The primary and only explicit weakness identified is the absence of essential authorization and integrity checks (nonces and capabilities) which, if not addressed in future updates, could lead to significant security risks.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

Toucan – Gutenberg Color Palette Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Toucan – Gutenberg Color Palette Release Timeline

v1.0Current
Code Analysis
Analyzed Mar 17, 2026

Toucan – Gutenberg Color Palette Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

Toucan – Gutenberg Color Palette Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 2
actioninitsrc\ColorPalette.php:18
actioncmb2_admin_initsrc\ColorPalette.php:19
Maintenance & Trust

Toucan – Gutenberg Color Palette Maintenance & Trust

Maintenance Signals

WordPress version tested5.3.21
Last updatedDec 31, 2019
PHP min version5.4
Downloads2K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Toucan – Gutenberg Color Palette Developer Profile

Jonathan Daggerhart

5 plugins · 11K total installs

69
trust score
Avg Security Score
85/100
Avg Patch Time
331 days
View full developer profile
Detection Fingerprints

How We Detect Toucan – Gutenberg Color Palette

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/toucan-color-palette/dist/css/toucan-color-palette.css/wp-content/plugins/toucan-color-palette/dist/js/toucan-color-palette.js
Script Paths
/wp-content/plugins/toucan-color-palette/dist/js/toucan-color-palette.js
Version Parameters
toucan-color-palette/dist/css/toucan-color-palette.css?ver=toucan-color-palette/dist/js/toucan-color-palette.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Toucan – Gutenberg Color Palette