AI Generator Security & Risk Analysis

wordpress.org/plugins/ai-generator

A powerful WordPress AI content generation plugin that helps you create better content with AI.

30 active installs v2.1.0 PHP + WP 5.0+ Updated Apr 22, 2025
aiai-articleai-imagecontent-generationimage-generation
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Generator Safe to Use in 2026?

Generally Safe

Score 92/100

AI Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "ai-generator" plugin v2.1.0 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs, coupled with the plugin's small attack surface and the fact that all identified entry points (REST API routes) appear to have permission callbacks, are positive indicators. Furthermore, the code demonstrates good practices by exclusively using prepared statements for SQL queries and having a high percentage of properly escaped output. File operations and external HTTP requests are present, but without any identified taint flows or dangerous functions, these do not currently represent a significant risk.

Key Concerns

  • Nonce checks are missing
  • Capability checks are minimal
Vulnerabilities
None known

AI Generator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AI Generator Release Timeline

v2.1.0Current
v2.0.0
v1.0.0
Code Analysis
Analyzed Mar 16, 2026

AI Generator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
12 escaped
Nonce Checks
0
Capability Checks
2
File Operations
2
External Requests
3
Bundled Libraries
0

Output Escaping

86% escaped14 total outputs
Attack Surface

AI Generator Attack Surface

Entry Points2
Unprotected0

REST API Routes 2

POST/wp-json/story321/v1/generate_textfunctions.php:18
POST/wp-json/story321/v1/generate-text2imagefunctions.php:261
WordPress Hooks 6
actionadmin_enqueue_scriptsai-generator.php:33
actionadmin_menuai-generator.php:37
actionadmin_initai-generator.php:67
actionrest_api_initfunctions.php:17
actionrest_api_initfunctions.php:260
actionadd_meta_boxesmetabox.php:13
Maintenance & Trust

AI Generator Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedApr 22, 2025
PHP min version
Downloads620

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

AI Generator Developer Profile

story321

2 plugins · 30 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AI Generator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-generator/static/js/cloud-login.js
Script Paths
/wp-content/plugins/ai-generator/static/js/cloud-login.js
Version Parameters
ai-generator/style.css?ver=ai-generator/script.js?ver=

HTML / DOM Fingerprints

CSS Classes
wrapform-tableregular-text
HTML Comments
Removed by Story321AI.AI Generator Settingsv2.1.0Developed by Story321.com.+23 more
Data Attributes
name="story321_api_key"valueclass="regular-text"
JS Globals
story321Datawp_noncecloudLoginObjdisconnectObj
REST Endpoints
/wp-json/wp/v2/posts/wp-json/wp/v2/pages/wp-json/wp/v2/media/wp-json/wp/v2/users/wp-json/wp/v2/comments
FAQ

Frequently Asked Questions about AI Generator