Simple Accessibility Button Security & Risk Analysis

wordpress.org/plugins/yydevelopment-accessibility

Simple plugin that allow you add accessibility button to your website

900 active installs v2.3.0 PHP 5.2.4+ WP 5.0+ Updated Dec 11, 2025
accessibilityaccessibility-buttonaccessiblewcag
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Simple Accessibility Button Safe to Use in 2026?

Generally Safe

Score 100/100

Simple Accessibility Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3mo ago
Risk Assessment

The yydevelopment-accessibility plugin, version 2.3.0, demonstrates a generally good security posture based on the static analysis. The absence of critical code signals such as dangerous functions, raw SQL queries, and file operations is a strong indicator of secure coding practices. The plugin also correctly utilizes nonce and capability checks for its identified entry points. The vulnerability history is entirely clean, with no known CVEs, suggesting a lack of past exploitable weaknesses.

However, the taint analysis reveals two flows with unsanitized paths. While not classified as critical or high severity in this analysis, these represent potential avenues for injection vulnerabilities if user-supplied data is not properly validated or escaped before being used in sensitive operations. The output escaping, while having a high percentage of properly escaped outputs, still has a portion that is not, which could lead to cross-site scripting (XSS) vulnerabilities if the unescaped outputs handle user-controlled data. These are the primary areas of concern within an otherwise robust codebase.

In conclusion, this plugin appears to be well-secured with strong fundamental practices. The clean vulnerability history is highly encouraging. The minor concerns lie within the taint analysis and output escaping, which require careful review to ensure no exploitable weaknesses are present. Addressing these specific areas would further solidify the plugin's security.

Key Concerns

  • Flows with unsanitized paths
  • Unescaped output (24% of outputs)
Vulnerabilities
None known

Simple Accessibility Button Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Simple Accessibility Button Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
29
93 escaped
Nonce Checks
3
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

76% escaped122 total outputs
Data Flows
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
yydev_accessibility_echo_message_if_exists (include\functions.php:63)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Simple Accessibility Button Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_yydev_accessibility_stop_notice_forevernotices.php:62
authwp_ajax_yydev_accessibility_stop_notice_for_nownotices.php:84
WordPress Hooks 7
actionwp_headfront-end\front-end-output.php:63
actionwp_footerfront-end\front-end-output.php:410
actionwp_enqueue_scriptsfront-end\front-end-output.php:489
actionplugins_loadedindex.php:21
actionadmin_menuindex.php:66
filterplugin_action_linksindex.php:91
actionadmin_noticesnotices.php:274
Maintenance & Trust

Simple Accessibility Button Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 11, 2025
PHP min version5.2.4
Downloads9K

Community Trust

Rating100/100
Number of ratings7
Active installs900
Developer Profile

Simple Accessibility Button Developer Profile

yydevelopment

11 plugins · 51K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
67 days
View full developer profile
Detection Fingerprints

How We Detect Simple Accessibility Button

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/yydevelopment-accessibility/front-end/front-end-output.php/wp-content/plugins/yydevelopment-accessibility/include/settings.php/wp-content/plugins/yydevelopment-accessibility/include/functions.php/wp-content/plugins/yydevelopment-accessibility/include/install.php/wp-content/plugins/yydevelopment-accessibility/include/style.php/wp-content/plugins/yydevelopment-accessibility/include/scripts.php/wp-content/plugins/yydevelopment-accessibility/include/admin-output.php/wp-content/plugins/yydevelopment-accessibility/notices.php
Version Parameters
yydevelopment-accessibility/style.css?ver=yydevelopment-accessibility/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
yydev-accessibility-button
HTML Comments
<!-- YYDevelopment Accessibility Plugin --><!-- END YYDevelopment Accessibility Plugin -->
Data Attributes
data-yydev-accessibility-id
JS Globals
yydevAccessibilitySettings
FAQ

Frequently Asked Questions about Simple Accessibility Button