ABMsense – Visitor Identification for B2B Pipeline Growth Security & Risk Analysis

wordpress.org/plugins/abmsense

ABMsense helps businesses identify website visitors and predict similar organizations to drive B2B pipeline growth with AI-powered insights.

20 active installs v4.0.14 PHP 7.2+ WP 5.0+ Updated May 18, 2025
b2blead-generationsales-pipelinevisitor-identificationvisitor-tracking
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is ABMsense – Visitor Identification for B2B Pipeline Growth Safe to Use in 2026?

Generally Safe

Score 92/100

ABMsense – Visitor Identification for B2B Pipeline Growth has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "abmsense" plugin v4.0.14 demonstrates a generally strong security posture with excellent adherence to fundamental WordPress security practices. The plugin exhibits 100% usage of prepared statements for SQL queries and 100% proper output escaping, which significantly mitigates common web vulnerabilities like SQL injection and cross-site scripting (XSS). The extensive use of nonce and capability checks on its entry points (15 out of 17 AJAX handlers and 16 total capability checks) indicates a deliberate effort to protect against unauthorized access and actions. Furthermore, the absence of any recorded vulnerabilities, including CVEs, suggests a history of secure development or diligent patching by the developers. The plugin also avoids bundling external libraries, which can sometimes introduce their own security risks if not managed properly.

Despite the overall strong foundation, there are notable concerns. The plugin exposes 17 AJAX handlers, and critically, 2 of these lack any authentication checks. This is a significant security risk, as these unprotected entry points could be leveraged by unauthenticated users to trigger potentially harmful actions within the plugin. While taint analysis didn't reveal critical or high severity vulnerabilities in terms of direct data manipulation, the presence of 15 flows with unsanitized paths is concerning. This suggests that while the data might not be directly executable or leading to immediate critical exploits, it could pave the way for more complex attacks or unintended behavior if combined with other factors or if the plugin's functionality is not robustly validated. The single file operation, while not necessarily a vulnerability, is an area that warrants careful scrutiny to ensure it's handled securely, especially in conjunction with the unsanitized path flows.

Key Concerns

  • AJAX handlers without authentication checks
  • Taint flows with unsanitized paths
Vulnerabilities
None known

ABMsense – Visitor Identification for B2B Pipeline Growth Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

ABMsense – Visitor Identification for B2B Pipeline Growth Release Timeline

v3.3.35
v3.2.6
v3.0.12
v3.0.6
v2.0.6
v1.0.34
Code Analysis
Analyzed Apr 16, 2026

ABMsense – Visitor Identification for B2B Pipeline Growth Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
13 prepared
Unescaped Output
0
241 escaped
Nonce Checks
15
Capability Checks
16
File Operations
1
External Requests
11
Bundled Libraries
0

SQL Query Safety

100% prepared13 total queries

Output Escaping

100% escaped241 total outputs
Data Flows · Security
15 unsanitized

Data Flow Analysis

19 flows15 with unsanitized paths
abmsense_temp_save (abmsense.php:276)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
2 unprotected

ABMsense – Visitor Identification for B2B Pipeline Growth Attack Surface

Entry Points17
Unprotected2

AJAX Handlers 17

authwp_ajax_abmsense_temp_saveabmsense.php:514
noprivwp_ajax_abmsense_temp_saveabmsense.php:515
authwp_ajax_abmsense_set_consentabmsense.php:518
noprivwp_ajax_abmsense_set_consentabmsense.php:519
authwp_ajax_abmsense_get_visitor_scoresdashboard.php:654
authwp_ajax_abmsense_export_csvdashboard.php:1064
authwp_ajax_abmsense_export_demo_csvdashboard.php:1123
authwp_ajax_abmsense_save_slack_configintegrations.php:457
authwp_ajax_abmsense_get_slack_configintegrations.php:508
authwp_ajax_abmsense_disable_slackintegrations.php:566
authwp_ajax_abmsense_delete_slackintegrations.php:624
authwp_ajax_abmsense_get_slack_channelsintegrations.php:747
authwp_ajax_abmsense_enable_slackintegrations.php:806
authwp_ajax_abmsense_toggle_user_statenotifications.php:89
authwp_ajax_abmsense_add_user_ajaxnotifications.php:150
authwp_ajax_abmsense_edit_user_ajaxnotifications.php:229
authwp_ajax_abmsense_export_datasettings.php:685
WordPress Hooks 26
actioninitabmsense.php:18
actionadmin_noticesabmsense.php:34
actionmuplugins_loadedabmsense.php:53
actionrest_api_initabmsense.php:64
actionadmin_initabmsense.php:70
filterscript_loader_tagabmsense.php:145
actionwp_enqueue_scriptsabmsense.php:511
actioninitabmsense.php:512
actionwp_enqueue_scriptsabmsense.php:513
actionabmsense_one_hour_data_transferabmsense.php:516
filtercron_schedulesabmsense.php:517
actionadmin_initactivation_deactivation.php:152
actionadmin_initactivation_deactivation.php:153
actionupgrader_process_completeactivation_deactivation.php:164
actionadmin_enqueue_scriptsdashboard.php:58
actionadmin_menudashboard.php:106
actionadmin_menuintegrations.php:372
actionadmin_enqueue_scriptsintegrations.php:389
actionadmin_enqueue_scriptsintegrations.php:683
actionadmin_menunotifications.php:26
actionadmin_enqueue_scriptsnotifications.php:38
filterpre_option_blog_charsetsettings.php:415
actionadmin_enqueue_scriptssettings.php:686
actionadmin_initsettings.php:687
actionupgrader_process_completeutility.php:202
actionwpvisitor_tracking.php:108

Scheduled Events 1

abmsense_one_hour_data_transfer
Maintenance & Trust

ABMsense – Visitor Identification for B2B Pipeline Growth Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 18, 2025
PHP min version7.2
Downloads2K

Community Trust

Rating100/100
Number of ratings3
Active installs20
Developer Profile

ABMsense – Visitor Identification for B2B Pipeline Growth Developer Profile

HBSS Technologies

2 plugins · 120 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ABMsense – Visitor Identification for B2B Pipeline Growth

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/abmsense/js/abmsense_intent.js/wp-content/plugins/abmsense/js/abmsense_consent.js
Script Paths
/wp-content/plugins/abmsense/js/abmsense_intent.js/wp-content/plugins/abmsense/js/abmsense_consent.js
Version Parameters
abmsense_intent.js?ver=abmsense_consent.js?ver=

HTML / DOM Fingerprints

JS Globals
ABMSENSE_PREFIX
FAQ

Frequently Asked Questions about ABMsense – Visitor Identification for B2B Pipeline Growth