Mind – AI Page Builder Security & Risk Analysis

wordpress.org/plugins/ai-mind

AI-powered WordPress page builder creates sections, redesigns blocks, and builds entire pages using natural language prompts.

40 active installs v0.4.0 PHP 7.2+ WP 6.5+ Updated Nov 27, 2025
aiai-editorai-page-buildercopilotgpt
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Mind – AI Page Builder Safe to Use in 2026?

Generally Safe

Score 100/100

Mind – AI Page Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "ai-mind" v0.4.0 plugin exhibits a generally positive security posture based on the static analysis. The complete absence of any identified CVEs in its vulnerability history suggests a history of responsible development or limited exposure. The code analysis also reveals strengths such as 100% of SQL queries using prepared statements and three capability checks, indicating an awareness of secure coding practices. The lack of dangerous functions, critical taint flows, and a large attack surface without authentication are also favorable indicators. However, there are areas for improvement. The plugin has an identified file operation and two external HTTP requests, which could become points of vulnerability if not handled with extreme care. Furthermore, only two-thirds of output escaping is properly done, leaving a third of outputs potentially vulnerable to cross-site scripting (XSS) attacks. The absence of nonce checks on AJAX handlers (though the attack surface for AJAX is zero) and a complete lack of taint analysis data could mask potential issues. Overall, while the plugin appears relatively secure at this version due to a clean history and some good practices, the unescaped outputs and the presence of file operations and external requests warrant careful monitoring and potential remediation.

Key Concerns

  • Unescaped output detected
  • File operation present
  • External HTTP requests present
  • Nonce checks are missing
  • Taint analysis data is missing
Vulnerabilities
None known

Mind – AI Page Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Mind – AI Page Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
2 escaped
Nonce Checks
0
Capability Checks
3
File Operations
1
External Requests
2
Bundled Libraries
0

Output Escaping

67% escaped3 total outputs
Attack Surface

Mind – AI Page Builder Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 9
actionadmin_initclasses\class-admin.php:20
actionadmin_menuclasses\class-admin.php:21
filteradmin_body_classclasses\class-admin.php:23
actionrest_api_initclasses\class-ai-api.php:67
actionenqueue_block_editor_assetsclasses\class-assets.php:20
actionadmin_enqueue_scriptsclasses\class-assets.php:21
actionrest_api_initclasses\class-rest.php:34
actioninitmind.php:81
actionplugins_loadedmind.php:127
Maintenance & Trust

Mind – AI Page Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 27, 2025
PHP min version7.2
Downloads3K

Community Trust

Rating0/100
Number of ratings0
Active installs40
Developer Profile

Mind – AI Page Builder Developer Profile

Danny van Kooten

90 plugins · 2.1M total installs

73
trust score
Avg Security Score
91/100
Avg Patch Time
522 days
View full developer profile
Detection Fingerprints

How We Detect Mind – AI Page Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ai-mind/build/editor.js/wp-content/plugins/ai-mind/build/style-editor.css/wp-content/plugins/ai-mind/build/admin.js/wp-content/plugins/ai-mind/build/style-admin.css
Script Paths
/wp-content/plugins/ai-mind/build/editor.js/wp-content/plugins/ai-mind/build/admin.js
Version Parameters
ai-mind/build/editor.js?ver=ai-mind/build/style-editor.css?ver=ai-mind/build/admin.js?ver=ai-mind/build/style-admin.css?ver=

HTML / DOM Fingerprints

JS Globals
mindDatamindAdminData
REST Endpoints
/wp-json/mind/v1/update_settings//wp-json/mind/v1/request_ai/
FAQ

Frequently Asked Questions about Mind – AI Page Builder