
CraftEngineer SmartCommerce AI Security & Risk Analysis
wordpress.org/plugins/craftengineer-smartcommerce-aiAI tools for WordPress and WooCommerce with chatbot, content generation, recommendations, SEO helpers, and custom post type builder.
Is CraftEngineer SmartCommerce AI Safe to Use in 2026?
Generally Safe
Score 100/100CraftEngineer SmartCommerce AI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The craftengineer-smartcommerce-ai plugin v1.0.0 exhibits a generally strong security posture based on the provided static analysis. The complete absence of unprotected AJAX handlers, REST API routes, and the use of prepared statements for all SQL queries are significant positive indicators. Furthermore, the plugin demonstrates good practices with a high percentage of properly escaped output, the presence of nonce checks for its AJAX handlers, and capability checks, all contributing to a reduced attack surface. The lack of file operations and known vulnerabilities further strengthens this positive outlook.
However, there are a few areas that warrant attention. While the total number of AJAX handlers is notable, the lack of specific details on the implementation of the capability checks leaves a slight ambiguity. The presence of external HTTP requests, while not inherently a vulnerability, represents a potential indirect attack vector if the external services are compromised. The absence of any recorded vulnerability history, while excellent, could also be interpreted as the plugin being relatively new or having limited exposure, meaning future vulnerabilities are still possible.
Overall, the plugin appears to be developed with security in mind, adhering to many best practices. The identified strengths significantly outweigh the minor concerns. Continued vigilance and regular security audits are always recommended, especially as the plugin evolves and its user base grows.
Key Concerns
- External HTTP requests made
CraftEngineer SmartCommerce AI Security Vulnerabilities
CraftEngineer SmartCommerce AI Release Timeline
CraftEngineer SmartCommerce AI Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
CraftEngineer SmartCommerce AI Attack Surface
AJAX Handlers 14
Shortcodes 1
WordPress Hooks 13
Maintenance & Trust
CraftEngineer SmartCommerce AI Maintenance & Trust
Maintenance Signals
Community Trust
CraftEngineer SmartCommerce AI Alternatives
AIKTP
aiktp
AI-powered content automation. Generate SEO-optimized articles and WooCommerce product descriptions with bulk generation support.
MxChat – AI Chatbot & Content Generation for WordPress
mxchat-basic
The best free AI chatbot and content generation plugin for WordPress. Train ChatGPT, Claude, Gemini, or Grok on your website content.
AI Product Tools – Bulk Product Content Generator & AI Toolkit for WooCommerce
ai-product-tools
All-in-One AI Suite for WooCommerce: Bulk generate descriptions, titles, tags, FAQs, SEO Meta & AI Chatbot via OpenAI, Gemini, Claude & OpenRouter
StoreAgent – WooCommerce AI Chatbot & AI Content Tools
storeagent-ai-for-woocommerce
WooCommerce AI Chatbot for stores with built-in AI content tools. Generate product descriptions, answer customer questions & more with AI.
Adeait Product Writer for WooCommerce
adeait-product-writer-for-woocommerce
Generate professional product titles, descriptions and SEO meta in one click using Claude AI by Anthropic.
CraftEngineer SmartCommerce AI Developer Profile
1 plugin · 0 total installs
How We Detect CraftEngineer SmartCommerce AI
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/craftengineer-smartcommerce-ai/admin/css/admin.css/wp-content/plugins/craftengineer-smartcommerce-ai/admin/js/admin.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/css/chatbot.css/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/chatbot.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/css/recommendations.css/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/recommendations.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/css/seo.css/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/seo.js+3 more/wp-content/plugins/craftengineer-smartcommerce-ai/admin/js/admin.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/chatbot.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/recommendations.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/seo.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/content-generator.js/wp-content/plugins/craftengineer-smartcommerce-ai/public/js/cpt-builder.jscraftengineer-smartcommerce-ai/admin/css/admin.css?ver=craftengineer-smartcommerce-ai/admin/js/admin.js?ver=craftengineer-smartcommerce-ai/public/css/chatbot.css?ver=craftengineer-smartcommerce-ai/public/js/chatbot.js?ver=craftengineer-smartcommerce-ai/public/css/recommendations.css?ver=craftengineer-smartcommerce-ai/public/js/recommendations.js?ver=craftengineer-smartcommerce-ai/public/css/seo.css?ver=craftengineer-smartcommerce-ai/public/js/seo.js?ver=craftengineer-smartcommerce-ai/public/js/content-generator.js?ver=craftengineer-smartcommerce-ai/public/css/cpt-builder.css?ver=craftengineer-smartcommerce-ai/public/js/cpt-builder.js?ver=HTML / DOM Fingerprints
ssai-chatbot-widgetssai-chatbot-input-areassai-chatbot-messagesssai-recommendations-widgetssai-seo-analyzer-resultsssai-cpt-builder-form<!-- SSAI Chatbot Widget --><!-- SSAI Recommendations Widget --><!-- SSAI SEO Analyzer --><!-- SSAI CPT Builder -->data-ssai-chatbot-endpointdata-ssai-recommendations-endpointdata-ssai-seo-endpointdata-ssai-cpt-builder-endpointssai_adminssai_chatssai_recommendationsssai_seossai_content_generatorssai_cpt_builder/wp-json/ssai/v1/chat/wp-json/ssai/v1/recommendations/wp-json/ssai/v1/seo-analyze/wp-json/ssai/v1/cpt-save[wceai_cpt_list]