[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fWrzV2dtceRvx3mFwqHlCUOIzLwRmudpcpCszbVTfhsA":3},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":13,"download_link":23,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":26,"vulnerabilities":27,"developer":28,"crawl_stats":25,"alternatives":33,"analysis":125,"fingerprints":195},"campaign-ai","Campaign AI","1.0.0","campaignai2026","https:\u002F\u002Fprofiles.wordpress.org\u002Fcampaignai2026\u002F","\u003Cp>Campaign AI is a \u003Cstrong>service-connected WordPress plugin\u003C\u002Fstrong> that integrates your website with the Campaign AI fraud prevention platform.\u003C\u002Fp>\n\u003Cp>The plugin enables your site to communicate with Campaign AI’s remote analysis system, allowing traffic activity to be evaluated for signs of automated behavior, malicious access, or advertising abuse.\u003C\u002Fp>\n\u003Cp>⚠️ \u003Cstrong>Notice:\u003C\u002Fstrong>\u003Cbr \u002F>\nCampaign AI requires an \u003Cstrong>active external account\u003C\u002Fstrong>. The plugin alone does not provide fraud detection without a valid Campaign AI integration code.\u003C\u002Fp>\n\u003Ch3>How Campaign AI works\u003C\u002Fh3>\n\u003Cp>Once configured, Campaign AI observes incoming visits and sends limited technical data to its remote service.\u003Cbr \u002F>\nThis information is processed to help identify patterns commonly associated with click fraud, bots, and invalid traffic sources.\u003C\u002Fp>\n\u003Cp>The plugin communicates with the following external service:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>https:\u002F\u002Fcronjob.campaign-ai.com\u003C\u002Fstrong>\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Information transmitted\u003C\u002Fh3>\n\u003Cp>To function correctly, Campaign AI may transmit the following data elements to its service endpoint:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Campaign AI integration code\u003C\u002Fli>\n\u003Cli>Visitor IP address\u003C\u002Fli>\n\u003Cli>Referrer URL (if available)\u003C\u002Fli>\n\u003Cli>Time of the request\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This data is used strictly for traffic evaluation and fraud detection purposes.\u003C\u002Fp>\n\u003Ch3>Purpose of data processing\u003C\u002Fh3>\n\u003Cp>The transmitted information allows Campaign AI to:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Detect automated or scripted traffic\u003C\u002Fli>\n\u003Cli>Identify suspicious click behavior\u003C\u002Fli>\n\u003Cli>Reduce waste from invalid advertising interactions\u003C\u002Fli>\n\u003Cli>Improve campaign performance insights\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Campaign AI does \u003Cstrong>not intentionally collect personal user information\u003C\u002Fstrong> beyond what is technically necessary to perform fraud analysis.\u003C\u002Fp>\n\u003Ch3>Account requirement\u003C\u002Fh3>\n\u003Cp>An active Campaign AI account is required to use this plugin.\u003Cbr \u002F>\nYou can register and obtain an integration code at:\u003C\u002Fp>\n\u003Cp>\u003Cstrong>https:\u002F\u002Fwww.campaign-ai.com\u003C\u002Fstrong>\u003C\u002Fp>\n","Campaign AI integration plugin that protects websites and ad campaigns from bots and invalid traffic using real-time click fraud detection.",0,118,"","6.9.4","6.0","7.4",[18,19,20,21,22],"ad-fraud-protection","ads-security","bot-detection","click-fraud-prevention","invalid-traffic","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcampaign-ai.1.0.0.zip",100,null,"2026-03-15T10:48:56.248Z",[],{"slug":7,"display_name":7,"profile_url":8,"plugin_count":29,"total_installs":11,"avg_security_score":24,"avg_patch_time_days":30,"trust_score":31,"computed_at":32},1,30,94,"2026-04-03T23:05:31.125Z",[34,53,73,91,110],{"slug":35,"name":36,"version":37,"author":38,"author_profile":39,"description":40,"short_description":41,"active_installs":24,"downloaded":42,"rating":11,"num_ratings":11,"last_updated":43,"tested_up_to":44,"requires_at_least":15,"requires_php":16,"tags":45,"homepage":50,"download_link":51,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":52},"profound-agent-analytics","Profound Agent Analytics","1.0.3","Profound","https:\u002F\u002Fprofiles.wordpress.org\u002Fenarm4\u002F","\u003Cp>Profound Agent Analytics is a powerful WordPress plugin that integrates with Profound’s edge log analysis service to identify, classify, and provide reporting on bot and human traffic to your website. The plugin works by efficiently collecting and sending request data from public pages to Profound’s analytics platform. Read more \u003Ca href=\"https:\u002F\u002Fdocs.tryprofound.com\u002Fagent-analytics\u002Fwordpress\u002Fintroduction\" rel=\"nofollow ugc\">here\u003C\u002Fa>\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Non-blocking Performance\u003C\u002Fstrong>: Uses an asynchronous queue system to ensure zero impact on page load times\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy-Focused\u003C\u002Fstrong>: Query parameter redaction to protect sensitive data\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Smart Batching\u003C\u002Fstrong>: Efficiently sends logs in batches to minimize network overhead\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Circuit Breaker\u003C\u002Fstrong>: Automatic protection against API failures to prevent cascading issues\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flexible Configuration\u003C\u002Fstrong>: Extensive settings for customizing what data is collected and sent\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Enterprise Ready\u003C\u002Fstrong>: Supports environment variables and constants for API key configuration\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Col>\n\u003Cli>The plugin captures essential HTTP request metadata (method, path, status, timing)\u003C\u002Fli>\n\u003Cli>Data is immediately queued in a local database table with minimal overhead\u003C\u002Fli>\n\u003Cli>A background process sends batched logs to Profound’s API endpoint\u003C\u002Fli>\n\u003Cli>Failures are automatically retried with exponential backoff\u003C\u002Fli>\n\u003Cli>Your Profound dashboard provides real-time insights into your traffic\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Privacy & Security\u003C\u002Fh4>\n\u003Cp>Profound Agent Analytics is designed with privacy and security at its core:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Complete IP Tracking\u003C\u002Fstrong>: Captures full IP addresses for accurate traffic analysis and reverse DNS lookups (required for bot detection)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Sensitive Data Protection\u003C\u002Fstrong>: Automatically redacts passwords, tokens, and credit card information from query parameters\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Public Traffic Only\u003C\u002Fstrong>: Excludes all WordPress admin, REST API, and system paths – only tracks public visitor traffic\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Encrypted Storage\u003C\u002Fstrong>: API keys are encrypted using WordPress salts when Sodium extension is available\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No Cookie Tracking\u003C\u002Fstrong>: Server-side only – does not use cookies or client-side tracking\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Performance Optimized\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Adds less than 1ms to request processing time\u003C\u002Fli>\n\u003Cli>Efficient database operations with proper indexing\u003C\u002Fli>\n\u003Cli>Automatic cleanup of old log entries\u003C\u002Fli>\n\u003Cli>Memory-aware batching to prevent large payloads\u003C\u002Fli>\n\u003Cli>Configurable queue size limits\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>This plugin sends data to Profound’s analytics service (https:\u002F\u002Fartemis.api.tryprofound.com). The data sent includes:\u003Cbr \u002F>\n– Full IP addresses (required for bot detection and traffic analysis)\u003Cbr \u002F>\n– Request URLs from public pages only (admin and system paths are excluded)\u003Cbr \u002F>\n– HTTP headers (user agent, referer)\u003Cbr \u002F>\n– Response metadata (status code, size, duration)\u003Cbr \u002F>\n– Query parameters (with sensitive values redacted)\u003C\u002Fp>\n\u003Cp>The plugin only tracks public visitor traffic. WordPress admin activity, user actions, and system operations are not collected. All data is processed in accordance with Profound’s privacy policy available at https:\u002F\u002Ftryprofound.com\u002Fprivacy-policy\u003C\u002Fp>\n\u003Ch3>System Requirements\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>WordPress 6.0 or higher\u003C\u002Fli>\n\u003Cli>PHP 7.4 or higher\u003C\u002Fli>\n\u003Cli>MySQL 5.7+ or MariaDB 10.2+\u003C\u002Fli>\n\u003Cli>Ability to make outbound HTTPS requests\u003C\u002Fli>\n\u003Cli>WP-Cron enabled (or real cron configured)\u003C\u002Fli>\n\u003Cli>Sodium PHP extension (recommended for encryption)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Support\u003C\u002Fh3>\n\u003Cp>For support, please contact support@tryprofound.com\u003C\u002Fp>\n","Profound Agent Analytics sends lightweight HTTP request logs to Profound's analytics platform for advanced bot detection and traffic analysis.",439,"2025-12-02T21:05:00.000Z","6.8.5",[46,20,47,48,49],"analytics","performance","security","traffic-analysis","https:\u002F\u002Fdocs.tryprofound.com\u002Fagent-analytics\u002Fwordpress\u002Fintroduction","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fprofound-agent-analytics.1.0.3.zip","2026-03-15T15:16:48.613Z",{"slug":54,"name":55,"version":56,"author":57,"author_profile":58,"description":59,"short_description":60,"active_installs":61,"downloaded":62,"rating":24,"num_ratings":29,"last_updated":63,"tested_up_to":44,"requires_at_least":64,"requires_php":65,"tags":66,"homepage":71,"download_link":72,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":52},"invalid-traffic-blocker","Invalid Traffic Blocker","1.3","Michael Akinwumi","https:\u002F\u002Fprofiles.wordpress.org\u002Fmaocular\u002F","\u003Cp>Invalid Traffic Blocker is a WordPress plugin that uses the IPHub.info API to detect and block unwanted traffic such as bots, VPNs, and suspicious IP addresses. This helps AdSense publishers and website owners ensure that only valid traffic is served. This is not an official plugin for IPHub.info.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the IPHub.info API to validate IP addresses and determine whether they are suspicious, likely belonging to bots, VPNs, or invalid traffic.\u003Cbr \u002F>\nData transmitted:\u003Cbr \u002F>\n  • The visitor’s IP address is sent to IPHub.info each time a check is performed.\u003Cbr \u002F>\nPurpose:\u003Cbr \u002F>\n  • To determine the nature of the IP (e.g., non‑residential, residential suspicious) and decide whether to block access.\u003Cbr \u002F>\nTerms and Privacy:\u003Cbr \u002F>\n  • IPHub.info Terms of Service: https:\u002F\u002Fiphub.info\u002Flegal\u002Ftos\u003Cbr \u002F>\n  • IPHub.info Privacy Policy: https:\u002F\u002Fiphub.info\u002Flegal\u002Fprivacy\u003C\u002Fp>\n","Protect your site from invalid traffic by blocking suspicious IPs using the IPHub.info API.",40,670,"2025-05-31T00:00:00.000Z","4.5","7.2",[67,68,22,69,70],"adsense","blocker","ip","vpn","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Finvalid-traffic-blocker","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finvalid-traffic-blocker.1.3.zip",{"slug":74,"name":75,"version":37,"author":76,"author_profile":77,"description":78,"short_description":79,"active_installs":30,"downloaded":80,"rating":11,"num_ratings":11,"last_updated":81,"tested_up_to":14,"requires_at_least":82,"requires_php":83,"tags":84,"homepage":89,"download_link":90,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":52},"fake-user-detector","Fake User Detector","PluginRx","https:\u002F\u002Fprofiles.wordpress.org\u002Fapos37\u002F","\u003Cp>Fake User Detector helps WordPress site owners identify and flag suspicious user accounts after they have already registered.\u003C\u002Fp>\n\u003Cp>This plugin does not prevent or block registrations. Instead, it analyzes user data post-registration to highlight accounts that appear automated, fake, or low-quality, making it easier to review and remove them manually.\u003C\u002Fp>\n\u003Cp>Fake User Detector is designed as a cleanup and review tool, not a registration firewall. It works well alongside other plugins that handle CAPTCHA, email verification, honeypots, or other signup prevention techniques.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Features:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Post-Registration Analysis:\u003C\u002Fstrong> Evaluates user accounts after creation to identify suspicious patterns.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Gibberish Detection:\u003C\u002Fstrong> Flags accounts with non-human patterns like too many uppercase letters, no vowels, or clusters of consonants.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Symbol and Number Filters:\u003C\u002Fstrong> Detects unnatural use of digits or special characters in names.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Customizable Detection Rules:\u003C\u002Fstrong> Enable or disable individual checks to suit your site’s user base.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Flag for Review:\u003C\u002Fstrong> Suspicious accounts are flagged and marked for potential deletion.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Admin Notice:\u003C\u002Fstrong> Quickly see how many flagged users exist from your admin area.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Scan Existing Users:\u003C\u002Fstrong> Scan the users admin list table for suspicious accounts so you can easily delete them.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Gravity Forms Integration:\u003C\u002Fstrong> If using Gravity Forms User Registration, the plugin optionally runs validation checks on registrations submitted via forms.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Developer Hooks:\u003C\u002Fstrong> Add or customize detection logic with your own functions.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Detection Checks Include:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Manually flagged by admin\u003C\u002Fli>\n\u003Cli>Excessive uppercase letters (more than 5 in a name unless all caps)\u003C\u002Fli>\n\u003Cli>No vowels in names longer than 5 characters\u003C\u002Fli>\n\u003Cli>Six or more consecutive consonants in a name\u003C\u002Fli>\n\u003Cli>Presence of numbers in names\u003C\u002Fli>\n\u003Cli>Presence of special characters other than letters, numbers, and dashes\u003C\u002Fli>\n\u003Cli>Similarity between first and last name (exact match or one includes the other)\u003C\u002Fli>\n\u003Cli>Very short names (2 characters)\u003C\u002Fli>\n\u003Cli>Invalid or disposable email domains\u003C\u002Fli>\n\u003Cli>Excessive periods in email address (more than 3)\u003C\u002Fli>\n\u003Cli>Username containing URL patterns (\u003Ccode>http\u003C\u002Fcode>, \u003Ccode>https\u003C\u002Fcode>, or \u003Ccode>www\u003C\u002Fcode>)\u003C\u002Fli>\n\u003Cli>Known spam words in user bio or name\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Fake User Detector is ideal for membership sites, communities, forums, or any WordPress site that allows user registration and needs a practical way to review and clean up suspicious accounts that already exist.\u003C\u002Fp>\n","Detect and flag suspicious existing user accounts using simple checks to help clean up fake or low-quality registrations.",214,"2025-12-24T20:28:00.000Z","5.9","8.0",[85,20,86,87,88],"account-flagging","fake-users","spam","user-registration","https:\u002F\u002Fpluginrx.com\u002Fplugin\u002Ffake-user-detector\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffake-user-detector.1.0.3.zip",{"slug":92,"name":93,"version":94,"author":95,"author_profile":96,"description":97,"short_description":98,"active_installs":99,"downloaded":100,"rating":11,"num_ratings":11,"last_updated":101,"tested_up_to":102,"requires_at_least":103,"requires_php":65,"tags":104,"homepage":108,"download_link":109,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":52},"botfaqtor-code","Botfaqtor Code","1.0.1","botfaqtor","https:\u002F\u002Fprofiles.wordpress.org\u002Fbotfaqtor\u002F","\u003Cp>Плагин позволяет легко интегрировать защиту от ботов на ваш WordPress сайт. Всё, что вам нужно сделать – это зарегистрироваться на сайте \u003Ca href=\"https:\u002F\u002Fbotfaqtor.ru\" rel=\"nofollow ugc\">botfaqtor.ru\u003C\u002Fa>, получить ваш уникальный идентификатор и ввести его в настройках плагина.\u003C\u002Fp>\n\u003Ch3>Преимущества использования Botfaqtor:\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Защита от спам-ботов и вредоносных ботов\u003C\u002Fli>\n\u003Cli>Простая установка и настройка\u003C\u002Fli>\n\u003Cli>Минимальное влияние на производительность сайта\u003C\u002Fli>\n\u003Cli>Отсутствие необходимости в дополнительных настройках\u003C\u002Fli>\n\u003Cli>Эффективное определение и блокировка автоматизированного трафика\u003C\u002Fli>\n\u003Cli>Защита от скликивания рекламы и накрутки показателей\u003C\u002Fli>\n\u003Cli>Снижение нагрузки на сервер от ботов\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Плагин добавляет специальный скрипт в head-секцию вашего сайта, который отслеживает и анализирует поведение посетителей, идентифицируя ботов и защищая ваш сайт от них.\u003C\u002Fp>\n\u003Ch3>Внешние запросы\u003C\u002Fh3>\n\u003Cp>Плагин отправляет данные о посетителях сайта в сервис Botfaqtor для анализа и выявления ботов. Это происходит только после активации плагина и ввода действительного идентификатора Botfaqtor.\u003C\u002Fp>\n\u003Cp>Сервис предоставляется компанией Botfaqtor:\u003Cbr \u002F>\n* Условия использования: \u003Ca href=\"https:\u002F\u002Fbotfaqtor.ru\u002Fterms-of-service\" rel=\"nofollow ugc\">https:\u002F\u002Fbotfaqtor.ru\u002Fterms-of-service\u003C\u002Fa>\u003Cbr \u002F>\n* Политика конфиденциальности: \u003Ca href=\"https:\u002F\u002Fbotfaqtor.ru\u002Fprivacy-policy\" rel=\"nofollow ugc\">https:\u002F\u002Fbotfaqtor.ru\u002Fprivacy-policy\u003C\u002Fa>\u003C\u002Fp>\n","Интеграция сервиса Botfaqtor для защиты сайта от ботов.",20,496,"2025-04-23T10:59:00.000Z","6.7.5","5.2",[105,20,106,107,48],"anti-spam","bot-protection","protection","https:\u002F\u002Fbotfaqtor.ru\u002Fwordpress","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fbotfaqtor-code.zip",{"slug":111,"name":112,"version":113,"author":114,"author_profile":115,"description":116,"short_description":117,"active_installs":11,"downloaded":118,"rating":11,"num_ratings":11,"last_updated":119,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":120,"homepage":13,"download_link":124,"security_score":24,"vuln_count":11,"unpatched_count":11,"last_vuln_date":25,"fetched_at":52},"aitrackerstats","AI Tracker Stats","5.3.1","ashleyjackson","https:\u002F\u002Fprofiles.wordpress.org\u002Fashleyjackson\u002F","\u003Cp>\u003Cstrong>AI Tracker Stats\u003C\u002Fstrong> is a WordPress plugin designed to help website owners monitor, analyze, and control AI agent access to their WordPress sites. With the rise of AI-powered bots and scrapers, it’s more important than ever to understand who is accessing your content and how your data is being used.\u003C\u002Fp>\n\u003Cp>This plugin provides real-time detection, secure analytics, and actionable insights to protect your site from unwanted AI activity.\u003C\u002Fp>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>AI Agent Detection\u003C\u002Fstrong> – Automatically identifies and logs visits from known AI bots and agents including ChatGPT, Google Gemini, Claude, Perplexity, and more.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Comprehensive Analytics\u003C\u002Fstrong> – View detailed statistics on AI access attempts, including frequency, source, and trends over time.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Real-Time Dashboard\u003C\u002Fstrong> – Access a built-in dashboard directly from your WordPress admin panel.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Privacy\u003C\u002Fstrong> – All collected data is stored securely and is only accessible to authorized website owners.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Easy Installation\u003C\u002Fstrong> – Simple download and activation process with no complex configuration required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data Retention\u003C\u002Fstrong> – Logs are retained for 91 days, giving you ample time to review and download your data.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Domain Verification\u003C\u002Fstrong> – Verify ownership of your domain with a simple verification code.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Performance Optimized\u003C\u002Fstrong> – Non-blocking requests and optimized pattern matching ensure minimal server impact.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Performance Features\u003C\u002Fh4>\n\u003Cp>AI Tracker Stats has been optimized to ensure minimal impact on your server:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Non-Blocking HTTP Requests\u003C\u002Fstrong> – All tracking requests are sent asynchronously, ensuring zero impact on page load times.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Consolidated Regex\u003C\u002Fstrong> – Optimized pattern matching reduces CPU usage by consolidating multiple checks into one.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Fast Activation\u003C\u002Fstrong> – Plugin activation ensures proper registration during installation.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>These optimizations make the plugin suitable for high-traffic websites without adding server burden.\u003C\u002Fp>\n\u003Ch4>Why Use AI Tracker Stats?\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Understand Your Traffic\u003C\u002Fstrong> – Know exactly which AI agents are visiting your site and what content they access.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>SEO Intelligence\u003C\u002Fstrong> – Update your SEO strategy based on actionable intelligence about AI crawler behavior.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Gain Insights\u003C\u002Fstrong> – Make informed decisions about your content strategy based on real data.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Compliance & Transparency\u003C\u002Fstrong> – Maintain control over your site’s data and ensure compliance with privacy standards.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Optimized Performance\u003C\u002Fstrong> – Non-blocking architecture ensures zero impact on your site’s speed or user experience.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin connects to the external service at \u003Ca href=\"https:\u002F\u002Faitrackerstats.com\u002F\" rel=\"nofollow ugc\">aitrackerstats.com\u003C\u002Fa> for the following purposes:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Domain Registration\u003C\u002Fstrong> – On plugin activation, your domain is registered with the AI Tracker Stats service.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Tracking\u003C\u002Fstrong> – On each page visit, the user agent, page path, and domain are sent to the tracking endpoint for AI bot detection and analysis.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dashboard\u003C\u002Fstrong> – The admin dashboard loads an embedded view from aitrackerstats.com to display your analytics.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Updates\u003C\u002Fstrong> – The plugin checks for updates from the AI Tracker Stats service.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>By using this plugin, you agree to the \u003Ca href=\"https:\u002F\u002Faitrackerstats.com\u002Fterms\" rel=\"nofollow ugc\">Terms of Service\u003C\u002Fa> and \u003Ca href=\"https:\u002F\u002Faitrackerstats.com\u002Fprivacy\" rel=\"nofollow ugc\">Privacy Policy\u003C\u002Fa> of AI Tracker Stats.\u003C\u002Fp>\n","Monitor, analyze, and control AI agent access to your WordPress site.",1409,"2026-03-07T05:18:00.000Z",[121,46,20,122,123],"ai","data-privacy","seo","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Faitrackerstats.5.3.1.zip",{"attackSurface":126,"codeSignals":143,"taintFlows":157,"riskAssessment":185,"analyzedAt":194},{"hooks":127,"ajaxHandlers":139,"restRoutes":140,"shortcodes":141,"cronEvents":142,"entryPointCount":11,"unprotectedCount":11},[128,134],{"type":129,"name":130,"callback":131,"file":132,"line":133},"action","wp_footer","campaign_ai_add_text","campaign-ai.php",73,{"type":129,"name":135,"callback":136,"file":137,"line":138},"admin_menu","campaign_add_my_admin_link","includes\\campaign-functions.php",13,[],[],[],[],{"dangerousFunctions":144,"sqlUsage":145,"outputEscaping":147,"fileOperations":11,"externalRequests":11,"nonceChecks":29,"capabilityChecks":11,"bundledLibraries":156},[],{"prepared":11,"raw":11,"locations":146},[],{"escaped":148,"rawEcho":149,"locations":150},10,2,[151,154],{"file":137,"line":152,"context":153},51,"raw output",{"file":137,"line":155,"context":153},62,[],[158,177],{"entryPoint":159,"graph":160,"unsanitizedCount":11,"severity":176},"campaign_admin_page_contents (includes\\campaign-functions.php:31)",{"nodes":161,"edges":173},[162,167],{"id":163,"type":164,"label":165,"file":137,"line":166},"n0","source","$_POST",44,{"id":168,"type":169,"label":170,"file":137,"line":171,"wp_function":172},"n1","sink","echo() [XSS]",83,"echo",[174],{"from":163,"to":168,"sanitized":175},true,"low",{"entryPoint":178,"graph":179,"unsanitizedCount":11,"severity":176},"\u003Ccampaign-functions> (includes\\campaign-functions.php:0)",{"nodes":180,"edges":183},[181,182],{"id":163,"type":164,"label":165,"file":137,"line":166},{"id":168,"type":169,"label":170,"file":137,"line":171,"wp_function":172},[184],{"from":163,"to":168,"sanitized":175},{"summary":186,"deductions":187},"The \"campaign-ai\" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis. The absence of any identified attack surface entry points, including AJAX handlers, REST API routes, shortcodes, or cron events, significantly limits potential avenues for exploitation. Furthermore, the code signals reveal no dangerous functions, no raw SQL queries (all use prepared statements), and no file operations or external HTTP requests, all of which are positive indicators of secure coding practices. The presence of a nonce check is also a good sign for security, though the lack of capability checks on any entry points is a notable area for improvement.\n\nThe taint analysis shows no unsanitized paths or vulnerabilities of critical or high severity, reinforcing the initial impression of a well-secured plugin. The vulnerability history is also clear, with no recorded CVEs, indicating a lack of publicly known exploits targeting this plugin. However, the absence of capability checks on the zero identified entry points means that if any were to be added in future versions without proper authorization checks, it could introduce vulnerabilities. Despite this minor concern, the plugin's current state, with a clean bill of health from static and dynamic analysis and a lack of historical vulnerabilities, suggests it is well-developed from a security perspective.\n\nIn conclusion, \"campaign-ai\" v1.0.0 presents a very low-risk profile. Its strengths lie in its minimal attack surface, secure coding practices regarding database queries and output escaping (though not perfect), and a complete lack of known vulnerabilities. The primary weakness is the absence of capability checks, which, given the current lack of entry points, is a theoretical risk for future development rather than an immediate exploit. Overall, this plugin appears to be securely coded and maintained.",[188,191],{"reason":189,"points":190},"Output escaping not fully implemented",3,{"reason":192,"points":193},"Capability checks are missing",5,"2026-03-17T05:49:37.444Z",{"wat":196,"direct":201},{"assetPaths":197,"generatorPatterns":198,"scriptPaths":199,"versionParams":200},[],[],[],[],{"cssClasses":202,"htmlComments":204,"htmlAttributes":205,"restEndpoints":208,"jsGlobals":209,"shortcodeOutput":210},[203],"wrap",[],[206,207],"data-content-field","data-content-key",[],[],[]]