Celsian AI Chatbot Security & Risk Analysis

wordpress.org/plugins/celsian-ai-chatbot

Add an AI-powered chatbot to your WordPress site with Celsian AI. Easy setup, customizable appearance, and seamless integration.

0 active installs v1.0.0 PHP 7.4+ WP 5.0+ Updated Unknown
aiartificial-intelligencechat-widgetchatbotcustomer-support
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Celsian AI Chatbot Safe to Use in 2026?

Generally Safe

Score 100/100

Celsian AI Chatbot has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The "celsian-ai-chatbot" v1.0.0 plugin demonstrates a generally strong security posture based on the provided static analysis and vulnerability history. A significant strength is the absence of any recorded CVEs, which suggests a well-maintained codebase or a lack of prior exploitation. Furthermore, the code exhibits excellent practices by using prepared statements for all SQL queries and properly escaping all output, indicating a low risk of SQL injection and cross-site scripting (XSS) vulnerabilities. The plugin also incorporates a healthy number of nonce and capability checks, with no identified taint flows posing immediate critical or high risks.

However, there are a few areas that warrant attention. The presence of five AJAX handlers, while all appear to have authentication checks, still represents a potential attack surface that, if any future vulnerabilities are introduced, could be exploited. The single external HTTP request, while not inherently a vulnerability, is a common vector for supply chain attacks or can lead to information leakage if not handled carefully. While the current analysis shows no critical issues, vigilance is always recommended, especially for plugins that interact with external services.

In conclusion, "celsian-ai-chatbot" v1.0.0 is currently in a good security state, with robust practices in place for preventing common web vulnerabilities. The lack of past vulnerabilities further reinforces this. The primary recommendation would be to maintain this high standard and to thoroughly review any external HTTP requests for potential risks.

Key Concerns

  • AJAX handlers without auth checks
  • External HTTP requests
Vulnerabilities
None known

Celsian AI Chatbot Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Celsian AI Chatbot Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
40 escaped
Nonce Checks
7
Capability Checks
1
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

100% escaped40 total outputs
Data Flows
All sanitized

Data Flow Analysis

4 flows
handle_settings_form (admin\class-admin.php:418)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Celsian AI Chatbot Attack Surface

Entry Points6
Unprotected0

AJAX Handlers 5

authwp_ajax_celsian_disconnectadmin\class-admin.php:21
authwp_ajax_celsian_test_widgetadmin\class-admin.php:22
authwp_ajax_celsian_check_connectionadmin\class-admin.php:23
authwp_ajax_celsian_toggle_enabledadmin\class-admin.php:24
authwp_ajax_celsian_dismiss_noticeadmin\class-admin.php:25

Shortcodes 1

[celsian-chat] public\class-public.php:16
WordPress Hooks 8
actionadmin_menuadmin\class-admin.php:14
actionadmin_initadmin\class-admin.php:15
actionadmin_initadmin\class-admin.php:16
actionadmin_enqueue_scriptsadmin\class-admin.php:17
actionadmin_noticesadmin\class-admin.php:18
actioninitcelsian-ai-chatbot.php:38
actionwp_enqueue_scriptspublic\class-public.php:14
actionwp_footerpublic\class-public.php:15
Maintenance & Trust

Celsian AI Chatbot Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version7.4
Downloads129

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Celsian AI Chatbot Developer Profile

celsian

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Celsian AI Chatbot

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/celsian-ai-chatbot/admin/admin.css/wp-content/plugins/celsian-ai-chatbot/admin/admin.js/wp-content/plugins/celsian-ai-chatbot/public/public.css/wp-content/plugins/celsian-ai-chatbot/public/public.js
Script Paths
/wp-content/plugins/celsian-ai-chatbot/admin/admin.js/wp-content/plugins/celsian-ai-chatbot/public/public.js
Version Parameters
celsian-ai-chatbot/admin/admin.css?ver=celsian-ai-chatbot/admin/admin.js?ver=celsian-ai-chatbot/public/public.css?ver=celsian-ai-chatbot/public/public.js?ver=

HTML / DOM Fingerprints

CSS Classes
celsian-welcome-noticecelsian-welcome-contentcelsian-welcome-textcelsian-welcome-taglinecelsian-welcome-headingcelsian-welcome-descriptioncelsian-welcome-ctacelsian-welcome-illustration+10 more
Data Attributes
data-celsian-positiondata-celsian-themedata-celsian-show-branding
JS Globals
celsianAdmin
FAQ

Frequently Asked Questions about Celsian AI Chatbot