
AI Proposal Builder Security & Risk Analysis
wordpress.org/plugins/ai-proposal-builderAI-powered Freelance Proposal Generator plugin leverages ChatGPT to streamline the proposal creation process.
Is AI Proposal Builder Safe to Use in 2026?
Generally Safe
Score 100/100AI Proposal Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ai-proposal-builder" plugin version 1.1.7 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs, coupled with a high percentage of properly escaped output and the use of prepared statements for all SQL queries, indicates good development practices. The plugin also demonstrates a commitment to security by implementing nonce and capability checks on its entry points, and importantly, all AJAX handlers and REST API routes appear to have authentication checks, which is a significant strength.
Despite the positive indicators, there are minor areas of concern that prevent a perfect score. The presence of external HTTP requests, while not inherently problematic without further context, always carries a potential risk if the target endpoint is compromised or if data is not handled securely. The taint analysis revealing no critical or high severity flows is reassuring, but the limited number of flows analyzed (2) suggests that the analysis might not be exhaustive.
Overall, "ai-proposal-builder" v1.1.7 appears to be a securely developed plugin. The lack of historical vulnerabilities and the robust implementation of security best practices in the analyzed code are commendable. However, the potential for risk associated with external HTTP requests, even if minor in this specific case, and the limited scope of the taint analysis warrant continued vigilance and regular updates.
Key Concerns
- External HTTP requests present
AI Proposal Builder Security Vulnerabilities
AI Proposal Builder Release Timeline
AI Proposal Builder Code Analysis
Output Escaping
Data Flow Analysis
AI Proposal Builder Attack Surface
AJAX Handlers 4
Shortcodes 1
WordPress Hooks 11
Maintenance & Trust
AI Proposal Builder Maintenance & Trust
Maintenance Signals
Community Trust
AI Proposal Builder Alternatives
WP Forms Signature Contract Add-On
wp-forms-signature-contract-add-on
Instantly produce a legally binding PDF WordPress contract from a WP Forms contact form submission. Digital Signature Pad. Proposal.
Electronic Signature Add-on for Fluent Forms
signature-fluent-contract-forms-add-on
Instantly produce a legally binding PDF WordPress contract from a Fluent Forms contact form submission. Digital Signature Pad. Proposal.
Electronic Signature Add-on for Forminator
forms-digital-signature-forminator-add-on
Instantly produce a legally binding PDF WordPress contract from a Forminator Forms contact form submission. Digital Signature Pad. Proposal.
Contact Form 7
contact-form-7
Just another contact form plugin. Simple but flexible.
LiteSpeed Cache
litespeed-cache
All-in-one unbeatable acceleration & PageSpeed improvement: caching, image/CSS/JS optimization...
AI Proposal Builder Developer Profile
4 plugins · 20 total installs
How We Detect AI Proposal Builder
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ai-proposal-builder/src/admin/css/admin.cssai-proposal-builder/src/admin/css/admin.css?ver=HTML / DOM Fingerprints
bitcx_aipb_form_wrapperdata-bitcx_aipb_generate_proposalbitcx_aipb_ajax_object[bitcx_aipb_form]