
IntelliDraft Security & Risk Analysis
wordpress.org/plugins/intellidraftIntelliDraft is a WordPress plugin that uses AI to streamline content creation, helping users easily produce and optimize high-quality content.
Is IntelliDraft Safe to Use in 2026?
Generally Safe
Score 92/100IntelliDraft has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The intellidraft plugin v1.0.1 exhibits a strong security posture based on the provided static analysis. The code demonstrates good development practices by utilizing prepared statements for all SQL queries and ensuring all output is properly escaped. Furthermore, the presence of a nonce check on its sole AJAX handler is a positive sign for preventing CSRF attacks. The absence of dangerous functions, file operations, and external HTTP requests further contributes to a reduced attack surface. The vulnerability history being completely clean is also a very positive indicator of the plugin's security over time.
Despite the excellent static analysis results, the primary area of concern stems from the lack of explicit capability checks on the single AJAX handler. While a nonce check is present, this handler could potentially be accessible to any logged-in user, regardless of their role or permissions. This absence of role-based access control for the AJAX endpoint represents a potential weakness that could be exploited if the AJAX functionality itself has sensitive operations or if an attacker can trick a privileged user into triggering it. However, given the limited attack surface and other security measures in place, the overall risk remains relatively low.
Key Concerns
- AJAX handler lacks capability checks
IntelliDraft Security Vulnerabilities
IntelliDraft Code Analysis
Output Escaping
IntelliDraft Attack Surface
AJAX Handlers 1
WordPress Hooks 6
Maintenance & Trust
IntelliDraft Maintenance & Trust
Maintenance Signals
Community Trust
IntelliDraft Alternatives
Chat Button & Custom ChatGPT-Powered Bot by GetButton.io
whatshelp-chat-button
Floating button for chatting with your visitors via WhatsApp, Messenger, Contact form, and more.
Content Egg – Affiliate Product Importer & Price Comparison
content-egg
Import affiliate products, compare prices, sync to WooCommerce, and auto-generate SEO content with AI — all in one toolkit.
AI + Block Editor
ai-plus-block-editor
Add AI Capabilities to the Block Editor. Generate Captions/Headlines, Summaries, Slugs, SEO Keywords using our amazing plugin.
Spawnster: AI Blog Writer and Instant Site Generator for Publishing Articles on a Schedule
spawnster-ai-content-generator
The Best AI Blog Writer for Automatically Generating SEO-Friendly Blog Articles on a Schedule
AI Content Generator For Elementor
ai-auto-content-generator-for-elementor
Create and improve Elementor content instantly using Chrome’s built-in AI. Generate, rewrite, and optimize text directly in the editor.
IntelliDraft Developer Profile
1 plugin · 0 total installs
How We Detect IntelliDraft
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.