
AI Workflow Automation – AI Agent Hub Security & Risk Analysis
wordpress.org/plugins/ai-workflow-automation-ai-agent-hubAI-powered WordPress hub: 80+ abilities, MCP server, block editor AI experiments, RBAC, JWT auth, and workflows.
Is AI Workflow Automation – AI Agent Hub Safe to Use in 2026?
Generally Safe
Score 100/100AI Workflow Automation – AI Agent Hub has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "ai-workflow-automation-ai-agent-hub" plugin v1.5.0 demonstrates a generally good security posture, with several positive indicators. Notably, all SQL queries are properly prepared, and all identified outputs are correctly escaped, mitigating common injection and cross-site scripting vulnerabilities. The plugin also implements a robust number of capability checks and nonce checks, indicating an effort to secure its functionalities.
However, the analysis reveals a potential area of concern: one of the three REST API routes lacks a permission callback. This means that an unauthenticated user could potentially interact with this route, creating an entry point that might be exploitable if not carefully designed to handle public data or if it indirectly triggers sensitive actions. Despite this, the static analysis found no dangerous functions, no unsanitized paths in taint flows, and the vulnerability history is entirely clean, suggesting that this specific unprotected entry point may not currently lead to a severe vulnerability. Overall, the plugin is well-constructed, but the unprotected REST API route warrants attention for potential future hardening.
Key Concerns
- REST API route without permission callback
AI Workflow Automation – AI Agent Hub Security Vulnerabilities
AI Workflow Automation – AI Agent Hub Release Timeline
AI Workflow Automation – AI Agent Hub Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
AI Workflow Automation – AI Agent Hub Attack Surface
AJAX Handlers 4
REST API Routes 3
WordPress Hooks 33
Maintenance & Trust
AI Workflow Automation – AI Agent Hub Maintenance & Trust
Maintenance Signals
Community Trust
AI Workflow Automation – AI Agent Hub Alternatives
AI Chatbot & Workflow Automation by AIWU
ai-copilot-content-generator
AI automations you’ll actually use: Workflow Builder, AI Chatbot, AI Forms, Content Generation, Autoblogging, WooCommerce AI and MCP.
theMarketer – Email marketing, Newsletters, Automation & Loyalty for Woocommerce
themarketer
Collect subscribers. Send newsletters. Create 1:1 personalised emails using dynamic blocks. Activate one of almost 30 predefined workflows.
Easy MCP AI
easy-mcp-ai
Connect Claude, ChatGPT & any MCP-compatible AI to WordPress — create, edit & manage content without the admin panel. 100+ built-in tools. 100% free.
WPRaiz Content API Tool
wpraiz-content-api-tool
REST API + MCP Server for WordPress. Create, update, and manage posts programmatically. AI content generation with your own API keys (BYOK).
WPBot Automator – Automation for WordPress Visual No-Code WorkFlow Builder
wpbot
Automation plugin for WordPress with a visual no-code builder. Create automated workflows to connect WordPress, WooCommerce, WPForms, & more
AI Workflow Automation – AI Agent Hub Developer Profile
5 plugins · 4K total installs
How We Detect AI Workflow Automation – AI Agent Hub
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/excerpt-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/image-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/summarization/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/title-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/alt-text-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/editor-experiments.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/excerpt-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/image-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/summarization/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/title-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/experiments-build/alt-text-generation/index.js/wp-content/plugins/ai-workflow-automation-ai-agent-hub/assets/js/editor-experiments.jsai-workflow-automation-ai-agent-hub/assets/js/experiments-build/excerpt-generation/index.asset.phpai-workflow-automation-ai-agent-hub/assets/js/experiments-build/image-generation/index.asset.phpai-workflow-automation-ai-agent-hub/assets/js/experiments-build/summarization/index.asset.phpai-workflow-automation-ai-agent-hub/assets/js/experiments-build/title-generation/index.asset.phpai-workflow-automation-ai-agent-hub/assets/js/experiments-build/alt-text-generation/index.asset.phpai-workflow-automation-ai-agent-hub/assets/js/editor-experiments.asset.phpHTML / DOM Fingerprints
<!-- AI Agent Hub: Composer dependencies are missing. Please run "composer install". -->data-wp-edit-post="editorExperiments"window.awfah_editor_experiments_data/wp-json/ai-workflow-automation-ai-agent-hub/v1/get-settings/wp-json/wp/v2/types/attachment?context=edit