CodingBunny LLMs.txt Generator Security & Risk Analysis

wordpress.org/plugins/coding-bunny-llms-generator

Advanced llms.txt generator with AI metadata, Schema.org types, canonical URLs, and differentiated licenses for optimal LLM indexing.

100 active installs v1.2.2 PHP 8.0+ WP 6.0+ Updated Feb 26, 2026
aicrawlersllmsseositemap
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is CodingBunny LLMs.txt Generator Safe to Use in 2026?

Generally Safe

Score 100/100

CodingBunny LLMs.txt Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "coding-bunny-llms-generator" v1.2.2 plugin exhibits a generally good security posture with several positive indicators. The absence of known CVEs and a lack of critical or high severity vulnerabilities in its history are strong points. The code also demonstrates good practices in its handling of SQL queries, utilizing prepared statements exclusively, and a high percentage of output escaping. The limited number of file operations and external HTTP requests, along with the presence of nonce and capability checks, further contribute to its security.

However, the plugin does present a notable concern regarding its attack surface. Specifically, one of the four identified AJAX handlers lacks authentication checks. This unprotected entry point could potentially be exploited by an unauthenticated user to trigger unintended actions or expose sensitive information if not properly secured within the handler's logic itself. While taint analysis shows no immediate critical or high severity flows, the presence of an unprotected AJAX handler warrants careful attention.

In conclusion, "coding-bunny-llms-generator" v1.2.2 has a solid foundation in terms of secure coding practices, particularly with SQL and output handling, and a clean vulnerability history. The primary weakness lies in an exposed AJAX endpoint. Addressing this single unprotected entry point would significantly enhance the plugin's overall security.

Key Concerns

  • AJAX handler without authentication
Vulnerabilities
None known

CodingBunny LLMs.txt Generator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

CodingBunny LLMs.txt Generator Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
4 prepared
Unescaped Output
33
136 escaped
Nonce Checks
3
Capability Checks
4
File Operations
1
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared4 total queries

Output Escaping

80% escaped169 total outputs
Attack Surface
1 unprotected

CodingBunny LLMs.txt Generator Attack Surface

Entry Points4
Unprotected1

AJAX Handlers 4

authwp_ajax_cbllms_add_htaccess_ruleadmin\class-cbllms-server-tools.php:21
authwp_ajax_cbllms_remove_htaccess_ruleadmin\class-cbllms-server-tools.php:22
authwp_ajax_cbllms_view_llms_txtcoding-bunny-llms-generator.php:186
authwp_ajax_cbllms_generate_nowincludes\class-cbllms-admin.php:28
WordPress Hooks 13
actionadmin_enqueue_scriptsadmin\class-cbllms-server-tools.php:20
actionadmin_initadmin\class-cbllms-settings.php:53
filterallowed_optionscoding-bunny-llms-generator.php:35
actionplugins_loadedcoding-bunny-llms-generator.php:71
actionadmin_menuincludes\class-cbllms-admin.php:26
actionadmin_enqueue_scriptsincludes\class-cbllms-admin.php:27
actionadmin_noticesincludes\class-cbllms-admin.php:29
actioninitincludes\class-cbllms-generator.php:71
filtercron_schedulesincludes\class-cbllms-scheduler.php:29
actioninitincludes\class-cbllms-scheduler.php:30
actioncbllms_cron_hookincludes\class-cbllms-scheduler.php:31
actiontransition_post_statusincludes\class-cbllms-scheduler.php:32
actionupdate_option_cbllms_optionsincludes\class-cbllms-scheduler.php:33

Scheduled Events 2

cbllms_cron_hook
cbllms_cron_hook
Maintenance & Trust

CodingBunny LLMs.txt Generator Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 26, 2026
PHP min version8.0
Downloads895

Community Trust

Rating100/100
Number of ratings1
Active installs100
Developer Profile

CodingBunny LLMs.txt Generator Developer Profile

CodingBunny

5 plugins · 400 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CodingBunny LLMs.txt Generator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/coding-bunny-llms-generator/admin/css/admin-styles.css/wp-content/plugins/coding-bunny-llms-generator/admin/js/server-tools.js
Script Paths
/wp-content/plugins/coding-bunny-llms-generator/admin/js/server-tools.js
Version Parameters
coding-bunny-llms-generator/admin/css/admin-styles.css?ver=coding-bunny-llms-generator/admin/js/server-tools.js?ver=

HTML / DOM Fingerprints

Data Attributes
data-noncedata-ajaxurl
JS Globals
cbllmsServerData
REST Endpoints
/wp-json/coding-bunny-llms-generator/v1/settings
FAQ

Frequently Asked Questions about CodingBunny LLMs.txt Generator