AITC Popup Builder – Scheduled & Multi Popup Manager Security & Risk Analysis

wordpress.org/plugins/aitc-popup-builder

AITC Popup Builder is a lightweight, fully customizable WordPress plugin to create announcement popups, promotional modals, & image popups in minutes.

0 active installs v2.0 PHP 7.4+ WP 5.5+ Updated Mar 18, 2026
marketing-popuppopuppopup-builderpopup-makerschedule-popup
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is AITC Popup Builder – Scheduled & Multi Popup Manager Safe to Use in 2026?

Generally Safe

Score 100/100

AITC Popup Builder – Scheduled & Multi Popup Manager has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The aitc-popup-builder plugin v2.0 exhibits a strong security posture based on the provided static analysis. The absence of any identified dangerous functions, raw SQL queries, file operations, or external HTTP requests is highly commendable. The plugin also demonstrates good practices with a high percentage of properly escaped output and a nonce check. The vulnerability history being completely clear further reinforces this positive assessment, indicating a consistently secure development history.

However, the analysis also reveals a potential area of concern: the complete lack of any identified entry points in the static analysis (AJAX handlers, REST API routes, shortcodes, cron events). While this suggests a minimal attack surface, it's unusual for a functional plugin. This could indicate that the plugin's features are implemented in a way that doesn't expose standard WordPress entry points, or that the static analysis tooling may have limitations in detecting them. This lack of discoverable entry points, coupled with the absence of any taint flows, means there are no immediate, evident vulnerabilities based on this data.

Overall, the plugin appears to be developed with security in mind, demonstrating good coding practices. The most significant weakness is the lack of any discernible entry points in the static analysis, which warrants further investigation to ensure all functionalities are securely implemented and accessible. Despite this unusual finding, the lack of historical vulnerabilities and positive code signals suggest a low immediate risk.

Vulnerabilities
None known

AITC Popup Builder – Scheduled & Multi Popup Manager Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AITC Popup Builder – Scheduled & Multi Popup Manager Release Timeline

v2.0Current
v1.1
Code Analysis
Analyzed Apr 16, 2026

AITC Popup Builder – Scheduled & Multi Popup Manager Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
74 escaped
Nonce Checks
1
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

96% escaped77 total outputs
Attack Surface

AITC Popup Builder – Scheduled & Multi Popup Manager Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_enqueue_scriptsaitc-popup-builder.php:15
actionadmin_enqueue_scriptsaitc-popup-builder.php:20
actioninitaitc-popup-builder.php:28
actionadd_meta_boxesaitc-popup-builder.php:59
actionsave_post_mp_popupaitc-popup-builder.php:335
actionwp_footeraitc-popup-builder.php:377
Maintenance & Trust

AITC Popup Builder – Scheduled & Multi Popup Manager Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 18, 2026
PHP min version7.4
Downloads203

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

AITC Popup Builder – Scheduled & Multi Popup Manager Developer Profile

AITC International

2 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AITC Popup Builder – Scheduled & Multi Popup Manager

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/aitc-popup-builder/assets/css/popup.css/wp-content/plugins/aitc-popup-builder/assets/js/popup.js
Script Paths
/wp-content/plugins/aitc-popup-builder/assets/js/popup.js
Version Parameters
aitc-popup-builder/assets/css/popup.css?ver=aitc-popup-builder/assets/js/popup.js?ver=

HTML / DOM Fingerprints

CSS Classes
lp-tab-navlp-tab-contentlp-default-rowlp-image-rowmp-media-wrappermp-image-previewaitc-popup-builder
HTML Comments
<!-- ============================= ENQUEUE CSS/JS ============================= --><!-- ============================= CUSTOM POST TYPE ============================= --><!-- ============================= META BOX ============================= -->
Data Attributes
data-tabdata-tab-contentmp_popup[template]mp_popup[default_width]mp_popup[content]mp_popup[btn_text]+35 more
JS Globals
lp_popup_ajax_object
FAQ

Frequently Asked Questions about AITC Popup Builder – Scheduled & Multi Popup Manager