AI Chatbot, Live Chat & Lead Generation for WordPress Security & Risk Analysis

wordpress.org/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt

Add a WordPress AI Chatbot to your site powered by Google Gemini. Manage AI agents, knowledge bases, live chat, and analytics from your dashboard.

100 active installs v2.0.5 PHP 7.4+ WP 5.6.0+ Updated Mar 20, 2026
ai-chatbotchatbotgoogle-geminilead-generationlive-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Chatbot, Live Chat & Lead Generation for WordPress Safe to Use in 2026?

Generally Safe

Score 100/100

AI Chatbot, Live Chat & Lead Generation for WordPress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

This plugin exhibits a generally strong security posture, adhering to several best practices. The complete absence of known CVEs, coupled with the fact that all identified SQL queries utilize prepared statements and a high percentage of output is properly escaped, indicates a development team that is aware of common web application vulnerabilities. The limited attack surface, with no exposed AJAX handlers, REST API routes, or shortcodes without authentication checks, further contributes to its security. Taint analysis also shows no critical or high-severity flows with unsanitized data, which is a positive sign.

However, a significant concern arises from the presence of the `unserialize()` function. If this function is used with untrusted user input, it can lead to remote code execution vulnerabilities. While no specific exploitation vectors were identified in the static analysis, this function inherently carries risk. Additionally, the plugin lacks capability checks for its cron event, meaning any authenticated user could potentially trigger it, although the specific impact of this cron event is not detailed in the provided data. The absence of any recorded vulnerability history is positive but doesn't entirely negate the risks associated with potentially dangerous functions like `unserialize()`.

Key Concerns

  • Use of unserialize() function
  • Cron event without capability check
Vulnerabilities
None known

AI Chatbot, Live Chat & Lead Generation for WordPress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AI Chatbot, Live Chat & Lead Generation for WordPress Release Timeline

v2.0.5Current
v2.0.4
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

AI Chatbot, Live Chat & Lead Generation for WordPress Code Analysis

Dangerous Functions
3
Raw SQL Queries
0
10 prepared
Unescaped Output
7
254 escaped
Nonce Checks
22
Capability Checks
0
File Operations
0
External Requests
17
Bundled Libraries
0

Dangerous Functions Found

unserialize'URL' => unserialize($ai_chatbot_row->ai_chatbot_url),includes\class-ai-chatbot.php:1571
unserialize'Tags' => unserialize($ai_chatbot_row->ai_chatbot_tags),includes\class-ai-chatbot.php:1573
unserialize'Categories' => unserialize($ai_chatbot_row->ai_chatbot_category),includes\class-ai-chatbot.php:1574

SQL Query Safety

100% prepared10 total queries

Output Escaping

97% escaped261 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

5 flows
<ai-chatbot-admin-display> (admin\partials\ai-chatbot-admin-display.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

AI Chatbot, Live Chat & Lead Generation for WordPress Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionplugins_loadedincludes\class-ai-chatbot.php:142
filtercron_schedulesincludes\class-ai-chatbot.php:157
actionRobofy_Ai_Chatbot_send_data_cron_jobincludes\class-ai-chatbot.php:163
actionadmin_enqueue_scriptsincludes\class-ai-chatbot.php:164
actionadmin_enqueue_scriptsincludes\class-ai-chatbot.php:165
actionadmin_menuincludes\class-ai-chatbot.php:166
actionadmin_footer_textincludes\class-ai-chatbot.php:180
actionwp_footerpublic\class-ai-chatbot-public.php:54

Scheduled Events 1

Robofy_Ai_Chatbot_send_data_cron_job
Maintenance & Trust

AI Chatbot, Live Chat & Lead Generation for WordPress Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 20, 2026
PHP min version7.4
Downloads5K

Community Trust

Rating100/100
Number of ratings2
Active installs100
Developer Profile

AI Chatbot, Live Chat & Lead Generation for WordPress Developer Profile

robofyaichatbot

1 plugin · 100 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AI Chatbot, Live Chat & Lead Generation for WordPress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/admin/css/ai-chatbot-admin.css/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/admin/css/bootstrap.min.css/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/css/ai-chatbot-public.css/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/ai-chatbot-public.js/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/jquery.min.js
Script Paths
/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/ai-chatbot-public.js/wp-content/plugins/ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/jquery.min.js
Version Parameters
ai-chatbot-live-chat-for-wordpress-using-chatgpt/admin/css/ai-chatbot-admin.css?ver=ai-chatbot-live-chat-for-wordpress-using-chatgpt/admin/css/bootstrap.min.css?ver=ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/css/ai-chatbot-public.css?ver=ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/ai-chatbot-public.js?ver=ai-chatbot-live-chat-for-wordpress-using-chatgpt/public/js/jquery.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
ai-chatbot-widget
HTML Comments
<!-- Robofy AI Chatbot Start --><!-- Robofy AI Chatbot End -->
Data Attributes
data-robofy-chatbot-id
JS Globals
aiChatbotConfig
REST Endpoints
/wp-json/robofy-ai-chatbot/v1/chat/wp-json/robofy-ai-chatbot/v1/get-history
Shortcode Output
[robofy_ai_chatbot]
FAQ

Frequently Asked Questions about AI Chatbot, Live Chat & Lead Generation for WordPress