Intellichat – AI Chatbot For WordPress with RAG Security & Risk Analysis

wordpress.org/plugins/intellichat-ai-chatbot

AI Chatbot with RAG, Gemini & Floating Widget. Train on your content, customize the widget, and answer visitor questions instantly.

0 active installs v1.3 PHP 7.2+ WP 5.0+ Updated Apr 16, 2026
ai-chatbotchatbot-widgetgemini-aiknowledge-baserag
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Intellichat – AI Chatbot For WordPress with RAG Safe to Use in 2026?

Generally Safe

Score 100/100

Intellichat – AI Chatbot For WordPress with RAG has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

Based on the provided static analysis and vulnerability history, the "intellichat-ai-chatbot" v1.0.0 plugin exhibits a strong security posture. The absence of any identified attack surface entry points (AJAX handlers, REST API routes, shortcodes, cron events) without authentication checks is a significant strength. Furthermore, the code shows good practices in handling SQL queries, utilizing prepared statements exclusively, and a high percentage of properly escaped output, minimizing risks of injection and cross-site scripting (XSS) vulnerabilities. The lack of file operations and external HTTP requests also reduces potential attack vectors.

The plugin's vulnerability history is also a major positive indicator, with zero known CVEs, unpatched vulnerabilities, or recorded common vulnerability types. This suggests a well-developed and secure codebase over its known history. The presence of capability checks indicates an awareness of WordPress's permission system. However, the absence of nonce checks on any potential entry points (though none were identified) could be a concern if new entry points were introduced without this security measure. Similarly, while taint analysis showed no critical or high-severity issues, the analysis was based on zero flows, which may not provide a comprehensive view of potential data manipulation risks if the plugin were to interact with user-provided data in more complex ways.

In conclusion, "intellichat-ai-chatbot" v1.0.0 appears to be a secure plugin, demonstrating excellent security practices in its current state. Its strengths lie in its minimal attack surface and robust handling of common web vulnerabilities. The primary area for potential improvement, albeit not a present issue based on the data, would be the proactive inclusion of nonce checks if any user-facing functionalities were to be added in future updates. The zero taint flows is a positive but could be more reassuring with a higher volume of analysis.

Key Concerns

  • No nonce checks found
Vulnerabilities
None known

Intellichat – AI Chatbot For WordPress with RAG Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Intellichat – AI Chatbot For WordPress with RAG Release Timeline

v1.3Current
v1.2
v1.1
v1.0
Code Analysis
Analyzed Mar 17, 2026

Intellichat – AI Chatbot For WordPress with RAG Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
13 escaped
Nonce Checks
0
Capability Checks
2
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

81% escaped16 total outputs
Attack Surface

Intellichat – AI Chatbot For WordPress with RAG Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 6
actionwp_enqueue_scriptsintellichat-ai-chatbot.php:44
actionadmin_menuintellichat-ai-chatbot.php:69
actionadmin_initintellichat-ai-chatbot.php:83
actionadmin_initintellichat-ai-chatbot.php:195
actionadmin_noticesintellichat-ai-chatbot.php:305
actionadmin_initintellichat-ai-chatbot.php:334
Maintenance & Trust

Intellichat – AI Chatbot For WordPress with RAG Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 16, 2026
PHP min version7.2
Downloads970

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Intellichat – AI Chatbot For WordPress with RAG Developer Profile

Sky Plugins

6 plugins · 130 total installs

93
trust score
Avg Security Score
98/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Intellichat – AI Chatbot For WordPress with RAG

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Script Paths
https://app.intellichat.io/api/widget.js

HTML / DOM Fingerprints

CSS Classes
intellichat-ai-chatbot-widget
FAQ

Frequently Asked Questions about Intellichat – AI Chatbot For WordPress with RAG