Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Security & Risk Analysis

wordpress.org/plugins/chatizy

Easily add a WhatsApp floating chat Widget, assign chat agents, create campaign targeting rules, and display a contact form – all in one powerful plug …

0 active installs v1.0.2 PHP 7.4+ WP 6.2+ Updated Nov 21, 2025
chatclick-to-chatwhatsappwhatsapp-businesswhatsapp-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Safe to Use in 2026?

Generally Safe

Score 100/100

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

Based on the static analysis and vulnerability history, the Chatizy plugin v1.0.2 appears to have a strong security posture. The code exhibits good practices by utilizing prepared statements for all SQL queries, a very high percentage of properly escaped output, and including nonce and capability checks. The absence of any known CVEs and the fact that there are no recorded vulnerabilities suggest a history of secure development or prompt patching. Furthermore, the limited attack surface, with no identified AJAX handlers, REST API routes, shortcodes, or cron events, significantly reduces the potential entry points for attackers.

However, it's important to note that the taint analysis reported zero flows, which, while seemingly positive, could also indicate that the analysis either didn't cover critical paths or that the paths analyzed didn't yield any exploitable issues. The presence of the Freemius v1.0 bundled library, without explicit versioning information, could be a potential concern if it's an outdated version with known vulnerabilities, although this is not explicitly stated in the provided data. Overall, the plugin demonstrates a commitment to security, but a deeper dive into the taint analysis and the bundled library's version would offer a more complete picture.

Key Concerns

  • Bundled library Freemius v1.0 may be outdated
Vulnerabilities
None known

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
58 prepared
Unescaped Output
1
93 escaped
Nonce Checks
8
Capability Checks
1
File Operations
0
External Requests
0
Bundled Libraries
1

Bundled Libraries

Freemius1.0

SQL Query Safety

100% prepared58 total queries

Output Escaping

99% escaped94 total outputs
Attack Surface

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 8
actionplugins_loadedchatizy.php:55
actionadmin_menuinc\Admin\Menu.php:38
actionadmin_enqueue_scriptsinc\Assets\Admin.php:58
actionadmin_headinc\Assets\Admin.php:59
actionwp_enqueue_scriptsinc\Assets\Frontend.php:52
actionwp_footerinc\Assets\Frontend.php:53
filtertheme_page_templatesinc\Core\Template.php:34
filtertemplate_includeinc\Core\Template.php:35
Maintenance & Trust

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 21, 2025
PHP min version7.4
Downloads538

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting Developer Profile

schorpy

3 plugins · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/chatizy/assets/frontend/dist/wp-content/plugins/chatizy/assets/js/redirect.js/wp-content/plugins/chatizy/assets/css/redirect.css
Script Paths
/wp-content/plugins/chatizy/assets/js/redirect.js/wp-content/plugins/chatizy/assets/frontend/dist
Version Parameters
chatizy/assets/js/redirect.js?ver=chatizy/assets/css/redirect.css?ver=

HTML / DOM Fingerprints

CSS Classes
chatizy-apppulse-iconmessagecountdown
HTML Comments
<!-- Frontend Redirect --><!-- This file is used to redirect whatsapp. -->
Data Attributes
id="chatizy-app"class="chatizy-app"id="countdown"class="countdown"
JS Globals
chatizyFrontendchatizyRedirect
REST Endpoints
/chatizy/v1/leads
FAQ

Frequently Asked Questions about Chatizy – Floating Chat Widget with Contact Form, Multi-Agent & Campaign Targeting