WP30 Sky Bar Security & Risk Analysis

wordpress.org/plugins/wp30-sky-bar

"WP30 Sky Bar" is a top bar for your message channel at any WordPress site.

0 active installs v1.0.0 PHP + WP + Updated Unknown
barmarketingmessagestartertop
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is WP30 Sky Bar Safe to Use in 2026?

Generally Safe

Score 100/100

WP30 Sky Bar has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "wp30-sky-bar" v1.0.0 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices by utilizing prepared statements for all SQL queries and shows no history of known vulnerabilities. However, significant concerns arise from the static analysis. The plugin has a total of 3 entry points, all of which are AJAX handlers that lack authentication checks. This creates a substantial attack surface that is entirely unprotected, making it vulnerable to unauthorized actions. Furthermore, a concerningly low rate of output escaping (11%) suggests a high likelihood of cross-site scripting (XSS) vulnerabilities, as user-supplied data may not be properly sanitized before being displayed to users. The absence of taint analysis findings is noted, but this does not negate the identified risks from unprotected entry points and poor output sanitization. The bundled Select2 library v3.4.6 is also outdated, which could potentially carry its own unpatched vulnerabilities.

Key Concerns

  • Unprotected AJAX handlers
  • Low output escaping rate
  • Bundled outdated library
Vulnerabilities
None known

WP30 Sky Bar Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

WP30 Sky Bar Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
64
8 escaped
Nonce Checks
2
Capability Checks
4
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Select23.4.6

Output Escaping

11% escaped72 total outputs
Attack Surface
3 unprotected

WP30 Sky Bar Attack Surface

Entry Points3
Unprotected3

AJAX Handlers 3

authwp_ajax_wp30skybar_get_barsincludes\class-wp30-sky-bar.php:183
authwp_ajax_wp30skybar_get_bar_titlesincludes\class-wp30-sky-bar.php:184
authwp_ajax_preview_barincludes\class-wp30-sky-bar.php:217
WordPress Hooks 17
actionadmin_noticesadmin\class-wp30-sky-bar-settings.php:630
actionplugins_loadedincludes\class-wp30-sky-bar.php:149
actionadmin_enqueue_scriptsincludes\class-wp30-sky-bar.php:165
actionadmin_enqueue_scriptsincludes\class-wp30-sky-bar.php:166
actioninitincludes\class-wp30-sky-bar.php:169
actionadd_meta_boxesincludes\class-wp30-sky-bar.php:172
actionsave_postincludes\class-wp30-sky-bar.php:173
actionpost_submitbox_misc_actionsincludes\class-wp30-sky-bar.php:176
filterpost_updated_messagesincludes\class-wp30-sky-bar.php:178
actionadd_meta_boxesincludes\class-wp30-sky-bar.php:181
actionsave_postincludes\class-wp30-sky-bar.php:182
actionwpincludes\class-wp30-sky-bar.php:213
actionwp_footerincludes\class-wp30-sky-bar.php:215
actionwp_enqueue_scriptsincludes\class-wp30-sky-bar.php:219
actionwp_enqueue_scriptsincludes\class-wp30-sky-bar.php:220
actionadmin_enqueue_scriptsincludes\class-wp30-sky-bar.php:221
actionadmin_enqueue_scriptsincludes\class-wp30-sky-bar.php:222
Maintenance & Trust

WP30 Sky Bar Maintenance & Trust

Maintenance Signals

WordPress version tested4.9.0
Last updatedUnknown
PHP min version
Downloads986

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

WP30 Sky Bar Developer Profile

terrytsang

8 plugins · 1K total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WP30 Sky Bar

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/wp30-sky-bar/css/wp30-sky-bar-admin.css/wp-content/plugins/wp30-sky-bar/css/select2.min.css/wp-content/plugins/wp30-sky-bar/js/select2.full.min.js/wp-content/plugins/wp30-sky-bar/js/wp30-sky-bar-admin.js
Version Parameters
wp30-sky-bar/css/wp30-sky-bar-admin.css?ver=wp30-sky-bar/css/select2.min.css?ver=wp30-sky-bar/js/select2.full.min.js?ver=wp30-sky-bar/js/wp30-sky-bar-admin.js?ver=

HTML / DOM Fingerprints

JS Globals
wp30skybar_locale
FAQ

Frequently Asked Questions about WP30 Sky Bar