AI Provider for Grok Security & Risk Analysis

wordpress.org/plugins/aslams-ai-provider-for-grok

AI Provider for Grok (xAI) for the WP AI Client SDK.

0 active installs v1.0.3 PHP 7.4+ WP 6.9+ Updated Mar 24, 2026
aiartificial-intelligenceconnectorgrokxai
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Provider for Grok Safe to Use in 2026?

Generally Safe

Score 100/100

AI Provider for Grok has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the static analysis, this plugin exhibits an exceptionally clean security posture. The complete absence of any detected entry points, including AJAX handlers, REST API routes, shortcodes, and cron events, significantly limits the potential attack surface. Furthermore, the code signals indicate a robust implementation with no dangerous functions, proper SQL query preparation, and complete output escaping. The lack of file operations and external HTTP requests further reduces potential risks. The taint analysis also shows no identified unsanitized flows, reinforcing the impression of well-written and secure code.

The vulnerability history is also entirely clear, with no recorded CVEs. This suggests either a highly secure development process or that the plugin has not been a target for extensive security research. However, the complete lack of any nonce checks or capability checks across all entry points (which are zero) is a notable observation. While there are no entry points to exploit, if any were introduced in the future without proper checks, it could create immediate vulnerabilities. Overall, the plugin demonstrates strong adherence to secure coding practices, with no immediate or historical security concerns evident in the provided data. The only area of potential future concern is the complete absence of any authorization mechanisms, which is currently not a risk due to the zero attack surface.

Vulnerabilities
None known

AI Provider for Grok Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

AI Provider for Grok Release Timeline

v1.0.3Current
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

AI Provider for Grok Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
0 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0
Attack Surface

AI Provider for Grok Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 1
actioninitai-provider-for-grok.php:54
Maintenance & Trust

AI Provider for Grok Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 24, 2026
PHP min version7.4
Downloads258

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

AI Provider for Grok Developer Profile

Aslam Doctor

4 plugins · 21K total installs

78
trust score
Avg Security Score
98/100
Avg Patch Time
748 days
View full developer profile
Detection Fingerprints

How We Detect AI Provider for Grok

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about AI Provider for Grok