Chat Metrics – Managed live chat plugin for wordpress Security & Risk Analysis

wordpress.org/plugins/chatmetrics

Chat Metrics is a 24/7 fully managed live chat service where you only get sales qualified leads. We convert your web traffic into leads.

10 active installs v1.0 PHP 5.2.4+ WP 3.0.1+ Updated Jun 25, 2019
chat-pluginlive-chatlive-chat-pluginwordpress-chatwordpress-live-chat
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Chat Metrics – Managed live chat plugin for wordpress Safe to Use in 2026?

Generally Safe

Score 85/100

Chat Metrics – Managed live chat plugin for wordpress has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 6yr ago
Risk Assessment

The chatmetrics plugin v1.0 exhibits a generally good security posture based on the static analysis. The absence of known vulnerabilities and a clean vulnerability history are positive indicators. The code demonstrates good practices with 100% of SQL queries using prepared statements and a high percentage of output escaping. The limited attack surface, with only one unprotected AJAX handler, is also a strength. However, the lack of capability checks on the single AJAX handler is a significant concern, as it could allow any logged-in user to potentially trigger unintended actions. While taint analysis shows no critical or high severity issues, the potential for unauthorized access via the unprotected AJAX endpoint represents a notable risk.

Key Concerns

  • Unprotected AJAX handler present
  • No capability checks on AJAX handler
  • Some output not properly escaped
Vulnerabilities
None known

Chat Metrics – Managed live chat plugin for wordpress Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Chat Metrics – Managed live chat plugin for wordpress Release Timeline

No version history available.
Code Analysis
Analyzed Apr 16, 2026

Chat Metrics – Managed live chat plugin for wordpress Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
4
19 escaped
Nonce Checks
4
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

83% escaped23 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

4 flows
chatmetlogout140784_admin_action (chatmetrics.php:157)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Chat Metrics – Managed live chat plugin for wordpress Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_chatmetrics_switchchatmetrics.php:269
WordPress Hooks 6
actionadmin_menuchatmetrics.php:28
actionadmin_enqueue_scriptschatmetrics.php:34
actionadmin_action_chatmetlogout140784chatmetrics.php:155
actionadmin_action_chatmet10500chatmetrics.php:171
actionadmin_action_chatmesignup2934chatmetrics.php:208
actionwp_headchatmetrics.php:264
Maintenance & Trust

Chat Metrics – Managed live chat plugin for wordpress Maintenance & Trust

Maintenance Signals

WordPress version tested5.2.24
Last updatedJun 25, 2019
PHP min version5.2.4
Downloads1K

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

Chat Metrics – Managed live chat plugin for wordpress Developer Profile

chatmetrics

1 plugin · 10 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Chat Metrics – Managed live chat plugin for wordpress

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/chatmetrics/assets/style.css/wp-content/plugins/chatmetrics/assets/custom.js
Script Paths
/wp-content/plugins/chatmetrics/assets/custom.js
Version Parameters
chatmetrics/style.css?ver=chatmetrics/custom.js?ver=

HTML / DOM Fingerprints

CSS Classes
chatmetrics-contentks-logoswitchsliderchat-enablechatenable-textform-tablebutton-chat+10 more
Data Attributes
id="chatmetrics-content"id="chatlogin-form"
JS Globals
ajax_object
FAQ

Frequently Asked Questions about Chat Metrics – Managed live chat plugin for wordpress