AI Content Forge Security & Risk Analysis

wordpress.org/plugins/ai-content-forge

Gutenberg block that allows users to generate content using OpenAI's API

0 active installs v1.0.0 PHP 7.2+ WP 6.7.1+ Updated Jan 16, 2025
aiblockcontent-generatoropenaiwordpress-block
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AI Content Forge Safe to Use in 2026?

Generally Safe

Score 92/100

AI Content Forge has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The static analysis of "ai-content-forge" v1.0.0 reveals a remarkably clean codebase with no identified attack surface entry points, dangerous functions, file operations, external HTTP requests, or unsanitized taint flows. All SQL queries are prepared, and all output is properly escaped, which are excellent security practices. The absence of any known vulnerabilities in its history further strengthens this positive assessment, indicating a strong focus on secure development by the plugin authors.

However, the complete lack of nonce checks and capability checks is a significant concern, particularly given that the plugin has no explicitly identified entry points. While the current version might not expose these, any future additions or modifications could inadvertently create vulnerabilities if these fundamental WordPress security mechanisms are not implemented. The absence of recorded vulnerabilities could also be a reflection of its limited usage or exposure rather than a guarantee of future security. Therefore, while the current state is very promising, the lack of basic security checks presents a potential weakness that warrants attention.

Key Concerns

  • Missing nonce checks
  • Missing capability checks
Vulnerabilities
None known

AI Content Forge Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

AI Content Forge Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
3 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped3 total outputs
Attack Surface

AI Content Forge Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 3
actioninitai-content-forge.php:36
actionadmin_menuincludes\settings.php:14
actionadmin_initincludes\settings.php:32
Maintenance & Trust

AI Content Forge Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedJan 16, 2025
PHP min version7.2
Downloads452

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

AI Content Forge Developer Profile

Aarti Chauhan

2 plugins · 10 total installs

91
trust score
Avg Security Score
96/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AI Content Forge

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-content-forge/build/index.js/wp-content/plugins/ai-content-forge/build/index.css
Script Paths
/wp-content/plugins/ai-content-forge/build/index.js
Version Parameters
ai-content-forge/build/index.css?ver=ai-content-forge/build/index.js?ver=

HTML / DOM Fingerprints

CSS Classes
wp-block-aicg-ai-content-forge
JS Globals
AIContentGeneratorSettings
FAQ

Frequently Asked Questions about AI Content Forge