AI Analytics – Track AI Bots & Referrals Security & Risk Analysis

wordpress.org/plugins/hall-ai-analytics

Track AI agents and assistants accessing your WordPress site. Monitor referrals and clicks from ChatGPT and conversational AI platforms.

30 active installs v1.0.2 PHP 7.0+ WP 5.0+ Updated Nov 28, 2025
ai-optimizationai-referralsai-searchanswer-engine-optimizationbot-analytics
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Analytics – Track AI Bots & Referrals Safe to Use in 2026?

Generally Safe

Score 100/100

AI Analytics – Track AI Bots & Referrals has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The hall-ai-analytics plugin v1.0.2 exhibits a generally good security posture based on the provided static analysis and vulnerability history. The absence of known CVEs, a clean vulnerability history, and a lack of critical or high-severity taint flows are positive indicators. The plugin also demonstrates good practices in its handling of SQL queries, utilizing prepared statements exclusively, and includes nonce and capability checks. However, there are areas for improvement. A significant concern is the relatively low percentage of properly escaped output (47%), which could leave the plugin vulnerable to cross-site scripting (XSS) attacks if user-controlled data is not adequately sanitized before being displayed. While the attack surface appears small with no identified unprotected entry points, the single external HTTP request should be carefully reviewed to ensure it is for legitimate and secure purposes, and that the data transmitted is properly handled. Overall, the plugin is built on a solid foundation, but the insufficient output escaping presents the most immediate and actionable security risk that requires attention.

Key Concerns

  • Insufficient output escaping
  • Single external HTTP request identified
Vulnerabilities
None known

AI Analytics – Track AI Bots & Referrals Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

AI Analytics – Track AI Bots & Referrals Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
27
24 escaped
Nonce Checks
1
Capability Checks
2
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

47% escaped51 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
ai_analytics_page (includes\settings.php:262)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

AI Analytics – Track AI Bots & Referrals Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionadmin_noticesai-analytics.php:31
actionadmin_noticesai-analytics.php:36
actionwp_loadedincludes\analytics.php:49
actionadmin_initincludes\settings.php:72
actionadmin_menuincludes\settings.php:86
actionadmin_enqueue_scriptsincludes\settings.php:258
Maintenance & Trust

AI Analytics – Track AI Bots & Referrals Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedNov 28, 2025
PHP min version7.0
Downloads469

Community Trust

Rating0/100
Number of ratings0
Active installs30
Developer Profile

AI Analytics – Track AI Bots & Referrals Developer Profile

Hall

1 plugin · 30 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect AI Analytics – Track AI Bots & Referrals

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/hall-ai-analytics/assets/css/style.css/wp-content/plugins/hall-ai-analytics/assets/js/script.js
Script Paths
/wp-content/plugins/hall-ai-analytics/assets/js/script.js
Version Parameters
hall-ai-analytics/assets/css/style.css?ver=hall-ai-analytics/assets/js/script.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about AI Analytics – Track AI Bots & Referrals