Ayzeo GEO + SEO Security & Risk Analysis

wordpress.org/plugins/ayzeo-geo-seo

Track how ChatGPT, Claude, Perplexity, and Gemini mention your brand. The analytics layer for AI-era search, built for WordPress.

30 active installs v1.1.0 PHP 7.4+ WP 5.0+ Updated Mar 18, 2026
ai-seoai-visibilitygenerative-engine-optimizationgeoseo-analytics
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Ayzeo GEO + SEO Safe to Use in 2026?

Generally Safe

Score 100/100

Ayzeo GEO + SEO has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The ayzeo-geo-seo plugin v1.1.0 demonstrates a generally strong security posture based on the static analysis. The absence of direct SQL injection vulnerabilities, evident in the 100% usage of prepared statements for all SQL queries, is a significant positive. Furthermore, the plugin meticulously handles output escaping for all 308 detected outputs, mitigating cross-site scripting (XSS) risks. The presence of numerous nonce and capability checks across its 10 AJAX handlers suggests a good effort to protect against unauthorized actions. The plugin also avoids bundled libraries, which can often be a source of outdated and vulnerable code. However, a potential area for improvement lies in the complete lack of REST API routes and shortcodes. While this reduces the attack surface, it also means these common WordPress extension points are not being utilized, which might limit functionality or be an oversight. The external HTTP request, while only one, should be monitored for any potential insecure communication patterns, although no specific issues were flagged here.

The vulnerability history is exceptionally clean, with zero recorded CVEs. This indicates a history of responsible development and maintenance, or that the plugin has not yet been a target for significant exploitation. The lack of any critical or high-severity taint flows further reinforces the positive findings from the static analysis. Overall, ayzeo-geo-seo v1.1.0 appears to be a well-coded plugin with a strong emphasis on security fundamentals. The primary concerns are minor and relate more to potential missed opportunities for secure feature implementation rather than active vulnerabilities. Its clean vulnerability history is a strong indicator of its current security standing.

Vulnerabilities
None known

Ayzeo GEO + SEO Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Ayzeo GEO + SEO Release Timeline

v1.1.0Current
Code Analysis
Analyzed Apr 16, 2026

Ayzeo GEO + SEO Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
6 prepared
Unescaped Output
1
307 escaped
Nonce Checks
11
Capability Checks
15
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared6 total queries

Output Escaping

100% escaped308 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

4 flows
ajax_save_llms_txt (ayzeo-geo-seo.php:144)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Ayzeo GEO + SEO Attack Surface

Entry Points10
Unprotected0

AJAX Handlers 10

authwp_ajax_ayzeo_scan_postayzeo-geo-seo.php:93
authwp_ajax_ayzeo_save_llms_txtayzeo-geo-seo.php:98
authwp_ajax_ayzeo_save_tokenincludes/class-ayzeo-admin.php:37
authwp_ajax_ayzeo_test_tokenincludes/class-ayzeo-admin.php:38
authwp_ajax_ayzeo_generate_contentincludes/class-ayzeo-content.php:36
authwp_ajax_ayzeo_create_postincludes/class-ayzeo-content.php:37
authwp_ajax_ayzeo_run_analysisincludes/class-ayzeo-dashboard.php:36
authwp_ajax_ayzeo_run_ai_queryincludes/class-ayzeo-dashboard.php:37
authwp_ajax_ayzeo_fetch_resultincludes/class-ayzeo-dashboard.php:38
authwp_ajax_ayzeo_run_llms_txt_analysisincludes/class-ayzeo-dashboard.php:39
WordPress Hooks 10
actioninitayzeo-geo-seo.php:82
actionadmin_initayzeo-geo-seo.php:83
actionadmin_menuayzeo-geo-seo.php:84
actionadmin_enqueue_scriptsayzeo-geo-seo.php:85
filterpost_row_actionsayzeo-geo-seo.php:88
filterpage_row_actionsayzeo-geo-seo.php:89
actionadmin_enqueue_scriptsayzeo-geo-seo.php:91
actioninitayzeo-geo-seo.php:95
actiontemplate_redirectayzeo-geo-seo.php:96
filterredirect_canonicalayzeo-geo-seo.php:100
Maintenance & Trust

Ayzeo GEO + SEO Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 18, 2026
PHP min version7.4
Downloads254

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

Ayzeo GEO + SEO Developer Profile

ayzeo

1 plugin · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Ayzeo GEO + SEO

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ayzeo-geo-seo/assets/js/ayzeo-scan.js
Script Paths
assets/js/ayzeo-scan.js
Version Parameters
ayzeo-geo-seo/assets/js/ayzeo-scan.js?ver=

HTML / DOM Fingerprints

JS Globals
ayzeo_ajax
FAQ

Frequently Asked Questions about Ayzeo GEO + SEO