Botkibble Security & Risk Analysis

wordpress.org/plugins/botkibble

Serves every published post and page as Markdown for AI agents and crawlers. No configuration, no API keys. Activate and it works.

0 active installs v1.3.0 PHP 8.2+ WP 6.0+ Updated Feb 26, 2026
agentsaiapicrawlersmarkdown
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Botkibble Safe to Use in 2026?

Generally Safe

Score 100/100

Botkibble has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The botkibble plugin v1.3.0 exhibits a generally good security posture, with no known vulnerabilities in its history. Static analysis reveals no direct attack surface through common entry points like AJAX, REST API, shortcodes, or cron events, which is a significant strength. The code also demonstrates a commitment to secure database interactions, with 100% of SQL queries using prepared statements. Furthermore, a high percentage of output is properly escaped, mitigating the risk of cross-site scripting (XSS) vulnerabilities. However, there are some areas of concern. The taint analysis identified one flow with unsanitized paths, which, while not classified as critical or high in this instance, indicates a potential for mishandling user-supplied data that could lead to security issues if exploited. The lack of nonce checks and capability checks on any potential, though currently unexposed, entry points is a notable weakness. While the plugin currently has no recorded vulnerabilities, the presence of a taint flow suggests that future, more complex attacks might be possible. Overall, botkibble benefits from a clean history and a limited attack surface but should address the identified taint flow and implement more robust security checks on its internal operations.

Key Concerns

  • Flows with unsanitized paths
  • No nonce checks
  • No capability checks
  • Low percentage of properly escaped output (14/16)
Vulnerabilities
None known

Botkibble Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Botkibble Release Timeline

v1.3.0Current
v1.2.1
Code Analysis
Analyzed Mar 17, 2026

Botkibble Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
2
12 escaped
Nonce Checks
0
Capability Checks
0
File Operations
9
External Requests
0
Bundled Libraries
0

Output Escaping

86% escaped14 total outputs
Data Flows · Security
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<routing> (includes\routing.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Botkibble Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 16
actionadmin_noticesbotkibble.php:26
actioninitbotkibble.php:55
actionactivated_pluginbotkibble.php:83
actiondeactivated_pluginbotkibble.php:84
actionswitch_themebotkibble.php:85
actioninitincludes\routing.php:19
actioninitincludes\routing.php:163
filterredirect_canonicalincludes\routing.php:166
filterquery_varsincludes\routing.php:179
filterrequestincludes\routing.php:188
actiontemplate_redirectincludes\routing.php:250
actionwp_headincludes\routing.php:316
actionsend_headersincludes\routing.php:353
actionsave_postincludes\routing.php:392
actionbefore_delete_postincludes\routing.php:393
actionupdate_option_page_on_frontincludes\routing.php:396
Maintenance & Trust

Botkibble Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version8.2
Downloads204

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Botkibble Developer Profile

gregrandall

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Botkibble

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
botkibble/vendor/composer/installers/src/Composer/Installers/BaseInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/ThemeInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/PluginInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/WordPressInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/BaseInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/ThemeInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/PluginInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/WordPressInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/BaseInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/ThemeInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/PluginInstaller.php?ver=botkibble/vendor/composer/installers/src/Composer/Installers/WordPressInstaller.php?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Botkibble