
AI App Onsite Security & Risk Analysis
wordpress.org/plugins/ai-app-onsiteAdd AI-powered apps to any site in minutes. Forget OpenAI “GPTs” or Claude “Projects”. The power of AI is now in your hands (and on your website)!
Is AI App Onsite Safe to Use in 2026?
Generally Safe
Score 100/100AI App Onsite has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ai-app-onsite" v1.2.7 plugin presents a mixed security posture. While it demonstrates good practices in output escaping and avoids known vulnerabilities and bundled libraries, significant concerns arise from its attack surface and data handling.
The plugin has a substantial attack surface with 66 AJAX handlers, a concerning 37 of which lack authentication checks. This opens a large vector for unauthorized actions. Furthermore, the presence of the `unserialize` function is a critical risk, especially when combined with unsanitized data, as evidenced by the high-severity taint flow. While the vulnerability history is clean, this does not mitigate the immediate risks identified in the static analysis.
In conclusion, the plugin's strengths in output escaping are overshadowed by the critical risk of unauthenticated AJAX handlers and the potential for deserialization vulnerabilities. The lack of known CVEs is positive but offers no guarantee of future security. Aggressive remediation of the unauthenticated AJAX endpoints and careful scrutiny of `unserialize` usage are highly recommended.
Key Concerns
- Large attack surface without auth checks
- Dangerous function (unserialize) present
- High severity taint flow with unsanitized path
- 27% of SQL queries not using prepared statements
- 0 capability checks on entry points
AI App Onsite Security Vulnerabilities
AI App Onsite Release Timeline
AI App Onsite Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
AI App Onsite Attack Surface
AJAX Handlers 66
WordPress Hooks 16
Scheduled Events 2
Maintenance & Trust
AI App Onsite Maintenance & Trust
Maintenance Signals
Community Trust
AI App Onsite Alternatives
Taqnix
taqnix
Build AI-powered mobile apps for WordPress/WooCommerce. No code, 100+ templates, push alerts, payments. Launch in minutes.
Free AI Lead Generation Chatbot – ChatSale
ai-lead-form-builder-chatsale
ChatSale is a ChatGPT chatbot for a website that turns website visitors into qualified leads and booked appointments through smart conversations.
AI Engine – The Chatbot, AI Framework & MCP for WordPress
ai-engine
AI meets WordPress. Your site can now chat, write poetry, solve problems, and maybe make you coffee.
LocoAI – Auto Translate For Loco Translate
automatic-translator-addon-for-loco-translate
LocoAI - Auto Translate For Loco Translate is a powerful tool for developers looking to quickly translate their WordPress plugins and themes.
GetGenie – AI Content Writer with Keyword Research & SEO Tracking Tools
getgenie
GPT-4o powered AI content writer with 37+ templates, chatbot, AI image, NLP keyword research, SEO analysis for WordPress, Gutenberg & Elementor.
AI App Onsite Developer Profile
1 plugin · 10 total installs
How We Detect AI App Onsite
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ai-app-onsite/assets/css/ai-app-onsite-style.css/wp-content/plugins/ai-app-onsite/assets/css/fontawesome.min.css/wp-content/plugins/ai-app-onsite/assets/css/quill.snow.css/wp-content/plugins/ai-app-onsite/assets/css/atom-one-dark.min.css/wp-content/plugins/ai-app-onsite/assets/css/katex.min.css/wp-content/plugins/ai-app-onsite/assets/js/jquery-3.7.1.min.js/wp-content/plugins/ai-app-onsite/assets/js/ai-app-onsite-scripts.js/wp-content/plugins/ai-app-onsite/assets/js/quill.min.js+2 more/wp-content/plugins/ai-app-onsite/assets/js/ai-app-onsite-scripts.jsai-app-onsite/assets/css/ai-app-onsite-style.css?ver=ai-app-onsite/assets/css/fontawesome.min.css?ver=ai-app-onsite/assets/css/quill.snow.css?ver=ai-app-onsite/assets/css/atom-one-dark.min.css?ver=ai-app-onsite/assets/css/katex.min.css?ver=ai-app-onsite/assets/js/jquery-3.7.1.min.js?ver=ai-app-onsite/assets/js/ai-app-onsite-scripts.js?ver=ai-app-onsite/assets/js/quill.min.js?ver=ai-app-onsite/assets/js/highlight.min.js?ver=ai-app-onsite/assets/js/katex.min.js?ver=HTML / DOM Fingerprints
ai-app-onsite-notice<!-- AI App Onsite Plugin --><!-- AI App Onsite Admin Page -->data-ai-app-onsite-fielddata-ai-app-onsite-modelwindow.ai_app_onsite_varsai_app_onsite_vars