AI Chatbot by Text Security & Risk Analysis

wordpress.org/plugins/ai-chatbot-by-text

AI-native customer service engine for ecommerce growth. Turn conversations into measurable revenue.

0 active installs v1.0.0 PHP 7.4+ WP 6.0+ Updated Apr 9, 2026
ai-chatai-chatbotchatbotlead-generationlive-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AI Chatbot by Text Safe to Use in 2026?

Generally Safe

Score 100/100

AI Chatbot by Text has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The plugin "ai-chatbot-by-text" v1.0.0 exhibits a concerning security posture due to a significant portion of its attack surface being unprotected. While the plugin demonstrates strong practices in areas like SQL query handling and output escaping, the presence of three AJAX handlers without authentication checks represents a major vulnerability. These unprotected entry points could be exploited by unauthenticated users to perform unintended actions or access sensitive data if the AJAX actions themselves are not adequately secured internally. The taint analysis did reveal two flows with unsanitized paths, which, while not classified as critical or high severity, are still a potential area of concern, especially when combined with the unprotected AJAX handlers. The plugin's history of zero known vulnerabilities is a positive sign, suggesting a generally robust development process, but it does not negate the immediate risks identified in the static analysis. The lack of vulnerabilities historically should not lead to complacency, as the current code has clear weaknesses that need to be addressed.

Key Concerns

  • Unprotected AJAX handlers
  • Taint flows with unsanitized paths
Vulnerabilities
None known

AI Chatbot by Text Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AI Chatbot by Text Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

AI Chatbot by Text Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
83 escaped
Nonce Checks
2
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped83 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
aict_settings_page (includes/plugin.php:332)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
3 unprotected

AI Chatbot by Text Attack Surface

Entry Points3
Unprotected3

AJAX Handlers 3

authwp_ajax_aict-refresh-cartincludes/plugin.php:106
noprivwp_ajax_aict-refresh-cartincludes/plugin.php:107
authwp_ajax_aict_disconnect_accountincludes/plugin.php:132
WordPress Hooks 8
actionactivated_pluginincludes/plugin.php:33
actionplugins_loadedincludes/plugin.php:34
actionwp_enqueue_scriptsincludes/plugin.php:110
actionwp_enqueue_scriptsincludes/plugin.php:146
actionadmin_noticesincludes/plugin.php:159
actionadmin_initincludes/plugin.php:187
actionadmin_menuincludes/plugin.php:193
actionadmin_enqueue_scriptsincludes/plugin.php:196
Maintenance & Trust

AI Chatbot by Text Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 9, 2026
PHP min version7.4
Downloads78

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

AI Chatbot by Text Developer Profile

WP-LiveChat

11 plugins · 113K total installs

76
trust score
Avg Security Score
95/100
Avg Patch Time
1833 days
View full developer profile
Detection Fingerprints

How We Detect AI Chatbot by Text

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-chatbot-by-text/includes/css/text.css/wp-content/plugins/ai-chatbot-by-text/includes/js/textConnect.js/wp-content/plugins/ai-chatbot-by-text/includes/js/deactivationHandler.js
Script Paths
/wp-content/plugins/ai-chatbot-by-text/includes/js/textConnect.js/wp-content/plugins/ai-chatbot-by-text/includes/js/deactivationHandler.js
Version Parameters
ai-chatbot-by-text/includes/css/text.css?ver=ai-chatbot-by-text/includes/js/textConnect.js?ver=ai-chatbot-by-text/includes/js/deactivationHandler.js?ver=

HTML / DOM Fingerprints

CSS Classes
awaiting-mod
Data Attributes
data-aict-connect-url
JS Globals
aictConnectaictDeactivationHandler
FAQ

Frequently Asked Questions about AI Chatbot by Text