AnyTimeReply – Sales chatbot Security & Risk Analysis

wordpress.org/plugins/anytimereply

AnyTimeReply is the automated sales chatbot available to customers round the clock. It collect leads in interactive way and manage customer queries.

10 active installs v2.1 PHP + WP 2.5.1+ Updated Jul 21, 2017
chatbotfacebookleadssupport-botvirtual-assistant
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AnyTimeReply – Sales chatbot Safe to Use in 2026?

Generally Safe

Score 85/100

AnyTimeReply – Sales chatbot has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 8yr ago
Risk Assessment

The "anytimereply" plugin v2.1 exhibits a mixed security posture. On the positive side, there are no recorded vulnerabilities or CVEs, indicating a history of relative stability. The code analysis also shows no dangerous functions, no raw SQL queries, and no file operations or external HTTP requests, which are all good security indicators. However, significant concerns arise from the static analysis, specifically the complete lack of output escaping for all identified output points. This presents a considerable risk, as any user-supplied data that is processed and then displayed could potentially lead to cross-site scripting (XSS) vulnerabilities. Additionally, the absence of nonce checks, while not directly tied to an exploitable entry point in this analysis, is a missed opportunity for robust protection against CSRF attacks.

Key Concerns

  • All output is unescaped
  • No nonce checks present
Vulnerabilities
None known

AnyTimeReply – Sales chatbot Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AnyTimeReply – Sales chatbot Release Timeline

v1.0
Code Analysis
Analyzed Mar 16, 2026

AnyTimeReply – Sales chatbot Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
0 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

0% escaped5 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

2 flows
atr_managesettings (AnyTimeReply.php:91)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

AnyTimeReply – Sales chatbot Attack Surface

Entry Points1
Unprotected0

Shortcodes 1

[anytimereply_button] AnyTimeReply.php:13
WordPress Hooks 2
actionadmin_menuAnyTimeReply.php:14
actionadmin_initAnyTimeReply.php:16
Maintenance & Trust

AnyTimeReply – Sales chatbot Maintenance & Trust

Maintenance Signals

WordPress version tested4.8.28
Last updatedJul 21, 2017
PHP min version
Downloads2K

Community Trust

Rating80/100
Number of ratings4
Active installs10
Developer Profile

AnyTimeReply – Sales chatbot Developer Profile

Spiker

4 plugins · 70 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AnyTimeReply – Sales chatbot

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/anytimereply/js/chat.js/wp-content/plugins/anytimereply/js/jquery.popup.js/wp-content/plugins/anytimereply/css/chatbox.css/wp-content/plugins/anytimereply/images/logo.png/wp-content/plugins/anytimereply/images/bluedot.png
Script Paths
/wp-content/plugins/anytimereply/js/chat.js/wp-content/plugins/anytimereply/js/jquery.popup.js

HTML / DOM Fingerprints

CSS Classes
popupjs__popupjs__slide_topp_closejs__p_closeuserleadsleadsinfodatas+11 more
Data Attributes
id="atrintro233"id="mariaicon886"onclick="startChat(onkeydown="javascript:return checkChatBoxInputKey(event,this,
JS Globals
checkChatBoxInputKeystartChatinitChat
Shortcode Output
<div class="popup js__popup js__slide_top" style="text-align:center;"><a href="#" class="p_close js__p_close" title="Close"> <span></span><span></span> </a><div id="atrintro233"><img src="
FAQ

Frequently Asked Questions about AnyTimeReply – Sales chatbot