
Desku.io – Live Chat, Help Desk & Knowledge Base Security & Risk Analysis
wordpress.org/plugins/desku-livechat-ai-chatbotAI customer service software for WordPress—live chat, instant replies & a smart knowledge base to boost support in minutes.
Is Desku.io – Live Chat, Help Desk & Knowledge Base Safe to Use in 2026?
Generally Safe
Score 100/100Desku.io – Live Chat, Help Desk & Knowledge Base has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "desku-livechat-ai-chatbot" plugin v0.0.2 exhibits a generally positive security posture based on the provided static analysis. The plugin has no known CVEs, a clean vulnerability history, and employs good practices such as using prepared statements for all SQL queries and having a high percentage of properly escaped outputs. The absence of taint flows and critical/high severity issues in the taint analysis further reinforces this good standing. However, there are areas for improvement. While all AJAX handlers have nonce checks, the absence of capability checks across all entry points, including AJAX handlers, is a significant concern. This means that any authenticated user, regardless of their role, could potentially trigger these AJAX actions. The presence of external HTTP requests also warrants attention, as these can be vectors for further vulnerabilities if not handled with extreme care, though no specific issues were flagged here. Overall, the plugin is well-coded in terms of common pitfalls, but the lack of granular access control is its primary weakness.
Key Concerns
- Missing capability checks on AJAX handlers
Desku.io – Live Chat, Help Desk & Knowledge Base Security Vulnerabilities
Desku.io – Live Chat, Help Desk & Knowledge Base Code Analysis
Output Escaping
Desku.io – Live Chat, Help Desk & Knowledge Base Attack Surface
AJAX Handlers 5
WordPress Hooks 5
Maintenance & Trust
Desku.io – Live Chat, Help Desk & Knowledge Base Maintenance & Trust
Maintenance Signals
Community Trust
Desku.io – Live Chat, Help Desk & Knowledge Base Alternatives
Live Chat with Messenger Customer Chat
fb-messenger-live-chat
Support your customers via Facebook Messenger Live Chat conveniently from your own website.
Re:amaze Helpdesk & Live Chat
reamaze
Boost sales conversions, loyalty, and engagement. Manage your social, email, sms, live chat, FAQ for your WordPress or WooCommerce store.
AI Live Chat
wp-iclew
Provide live technical assistance to users, give them reasons to buy your product! The Agent scans your website to learn relevant answers to user ques …
Kust AI – Smart Customer Support Chatbot & Help Desk
kust-ai-widget
AI-powered customer support chatbot that resolves 97% of tickets automatically. Multi-language support, live chat, analytics, and seamless WordPress i …
Reacho – Free Customer Support Plugin for WooCommerce
reacho-for-woocommerce
Boost WooCommerce engagement with Reacho's automation, help desk, and live chat. Manage all interactions in one place—no coding needed.
Desku.io – Live Chat, Help Desk & Knowledge Base Developer Profile
5 plugins · 540 total installs
How We Detect Desku.io – Live Chat, Help Desk & Knowledge Base
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/desku-livechat-ai-chatbot/assets/css/main.css/wp-content/plugins/desku-livechat-ai-chatbot/assets/js/admin.js/wp-content/plugins/desku-livechat-ai-chatbot/assets/js/public.jsDeskudesku-main-cssdesku-admin-jsdesku-public-jsHTML / DOM Fingerprints
desku-widget-containerdesku-chat-bubbledesku-chat-messagedesku-input-areadesku-widget-header<!-- Desku AI Chatbot Widget --><!-- End Desku AI Chatbot Widget --><!-- Desku Chat Widget Wrapper -->data-desku-widget-iddata-desku-api-urldata-desku-auth-tokendeskuChatConfigDeskuWidget/wp-json/desku/v1/chat/wp-json/desku/v1/history[desku_chat_widget]