ImmobiliareAI – AI-Powered Real Estate Descriptions Security & Risk Analysis

wordpress.org/plugins/immobiliareai

Generate polished real-estate listings with AI. Gutenberg block. IT/EN, saves time per listing.

0 active installs v1.3.0 PHP 7.4+ WP 5.0+ Updated Dec 16, 2025
aiimmobiliareopenaiproperty-descriptionreal-estate
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is ImmobiliareAI – AI-Powered Real Estate Descriptions Safe to Use in 2026?

Generally Safe

Score 100/100

ImmobiliareAI – AI-Powered Real Estate Descriptions has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The plugin "immobiliareai" v1.3.0 demonstrates a strong security posture based on the provided static analysis. The absence of dangerous functions, properly escaped output, and the exclusive use of prepared statements for SQL queries are excellent security practices. Furthermore, the limited attack surface consisting of a single AJAX handler, which appears to have a nonce check, and no shortcodes or REST API endpoints further reduces potential exposure. The lack of any recorded vulnerabilities or CVEs in its history suggests a well-maintained and secure codebase.

However, a key area for improvement is the absence of capability checks on the AJAX handler. While a nonce check prevents basic cross-site request forgery, it does not ensure that the user performing the action has the necessary permissions. This could allow lower-privileged users to trigger functionality intended for administrators or other privileged roles, potentially leading to unintended consequences or privilege escalation in certain scenarios. The presence of two external HTTP requests also warrants review to ensure they are made securely and do not introduce vulnerabilities through external dependencies.

In conclusion, "immobiliareai" v1.3.0 is a secure plugin with robust coding practices. The primary weakness lies in the lack of capability checks, which is a common oversight but a critical one for functions that should be permission-gated. Addressing this would significantly strengthen its security.

Key Concerns

  • AJAX handler lacks capability checks
Vulnerabilities
None known

ImmobiliareAI – AI-Powered Real Estate Descriptions Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

ImmobiliareAI – AI-Powered Real Estate Descriptions Release Timeline

v1.3.0Current
v1.2.5
v1.2.4
v1.2.3
v1.2.2
Code Analysis
Analyzed Mar 17, 2026

ImmobiliareAI – AI-Powered Real Estate Descriptions Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
18 escaped
Nonce Checks
1
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped18 total outputs
Attack Surface

ImmobiliareAI – AI-Powered Real Estate Descriptions Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_immobi_generate_descriptionimmobiliareai.php:161
WordPress Hooks 4
actionadd_meta_boxesimmobiliareai.php:19
actionadmin_enqueue_scriptsimmobiliareai.php:127
actionadmin_menuimmobiliareai.php:298
actionadmin_initimmobiliareai.php:308
Maintenance & Trust

ImmobiliareAI – AI-Powered Real Estate Descriptions Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 16, 2025
PHP min version7.4
Downloads516

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

ImmobiliareAI – AI-Powered Real Estate Descriptions Developer Profile

Fabio M. Giacomini

2 plugins · 0 total installs

89
trust score
Avg Security Score
93/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect ImmobiliareAI – AI-Powered Real Estate Descriptions

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/immobiliareai/css/admin.css/wp-content/plugins/immobiliareai/js/admin.js
Script Paths
/wp-content/plugins/immobiliareai/js/admin.js
Version Parameters
immobiliareai/css/admin.css?ver=immobiliareai/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
col-treai-extra-fullai-extra-counter-wrapperai-extra-counter-textgenerazioneterrazzovuota
HTML Comments
<!-- Riga 1: Zona – Tipologia – Stato --><!-- Riga 2: Piano – Cucina --><!-- Riga 3: Superficie – Bagni – Terrazzo (checkbox) --><!-- Riga 4: Dettagli extra (textarea full width) -->
Data Attributes
id="ai_zona"id="ai_tipologia"id="ai_stato"id="ai_piano"id="ai_cucina"id="ai_superficie"+13 more
JS Globals
ImmobiPluginImmobiPluginText
FAQ

Frequently Asked Questions about ImmobiliareAI – AI-Powered Real Estate Descriptions