
Baskerville AI Security Security & Risk Analysis
wordpress.org/plugins/baskerville-ai-securityAdvanced WordPress security plugin with AI bot detection, GeoIP access control, and Cloudflare Turnstile integration.
Is Baskerville AI Security Safe to Use in 2026?
Generally Safe
Score 100/100Baskerville AI Security has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The baskerville-ai-security plugin v1.0.3 exhibits a mixed security posture. On the positive side, it demonstrates good practices with 100% of its SQL queries utilizing prepared statements and a high percentage (99%) of outputs being properly escaped. The presence of numerous nonce and capability checks, along with a clean vulnerability history, are also strong indicators of a security-conscious development approach. However, significant concerns arise from its attack surface. Three out of a total of nine entry points (AJAX handlers and REST API routes) lack proper authentication or permission checks. This presents a considerable risk, as unauthenticated or improperly authorized access could be exploited. The taint analysis also flagged one high-severity flow with unsanitized paths, which, while not classified as critical, warrants immediate attention as it suggests a potential for data manipulation or unintended behavior.
The absence of any recorded vulnerabilities in its history is a positive sign, suggesting the plugin has been relatively robust. However, this must be weighed against the identified weaknesses in the current code. The presence of the `unserialize` function, while not directly linked to a vulnerability in the provided data, is inherently risky as it can lead to object injection if used with untrusted input. The plugin's overall risk profile is moderate, with strengths in core security practices offset by specific, high-impact weaknesses in its exposed entry points and taint flow.
Key Concerns
- AJAX handlers without auth checks
- REST API routes without permission callbacks
- High severity taint flow with unsanitized paths
- Use of dangerous unserialize function
Baskerville AI Security Security Vulnerabilities
Baskerville AI Security Release Timeline
Baskerville AI Security Code Analysis
Dangerous Functions Found
Bundled Libraries
SQL Query Safety
Output Escaping
Data Flow Analysis
Baskerville AI Security Attack Surface
AJAX Handlers 8
REST API Routes 1
WordPress Hooks 36
Scheduled Events 5
Maintenance & Trust
Baskerville AI Security Maintenance & Trust
Maintenance Signals
Community Trust
Baskerville AI Security Alternatives
Captcha by BestWebSoft – Advanced Spam Protection, Math & OCR-Friendly Captcha for Site Forms
captcha-bws
1 The Ultimate Spam Protection Plugin Using Captcha for WordPress Forms.
BotBlocker Security – Firewall & Bot Protection
botblocker-security
Protect your WordPress site: firewall, bot & brute-force protection, anti-spam, multi-layer CAPTCHA, optional cloud threat intel.
Bot Protection with Turnstile
bot-protection-turnstile
A lightweight plugin that protects core WordPress forms and selected third‑party plugins from spam and bot attacks using Cloudflare Turnstile CAPTCHA.
Captcha Spam Blocker
captcha-spam-blocker
Enhance your site’s security with dynamic CAPTCHA, blocking spam and bot access on forms. GDPR-compliant.
BotFirewall | Stop Spam Bots & Secure Login
botfirewall
BotFirewall is a powerful and modern plugin designed to protect your WordPress site from malicious bots, spam, and DDoS attacks.
Baskerville AI Security Developer Profile
1 plugin · 0 total installs
How We Detect Baskerville AI Security
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/baskerville-ai-security/assets/css/select2.min.css/wp-content/plugins/baskerville-ai-security/assets/js/select2.min.js/wp-content/plugins/baskerville-ai-security/assets/js/chart.min.js/wp-content/plugins/baskerville-ai-security/assets/js/admin.js/wp-content/plugins/baskerville-ai-security/assets/js/live-feed.jsbaskerville-ai-security/assets/css/select2.min.css?ver=baskerville-ai-security/assets/js/select2.min.js?ver=baskerville-ai-security/assets/js/chart.min.js?ver=baskerville-ai-security/assets/js/admin.js?ver=baskerville-ai-security/assets/js/live-feed.js?ver=HTML / DOM Fingerprints
baskervilleAdmin/wp-json/baskerville/v1