AI Chatbot – Jotform Security & Risk Analysis

wordpress.org/plugins/jotform-ai-chatbot

AI chatbot that automates support, answers FAQs, drives WooCommerce sales, generates leads, and boosts engagement — easy setup, no coding!

4K active installs v3.7.1 PHP 7.0+ WP + Updated Mar 12, 2026
aichatbotchatgpthelpdesklive-chat
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is AI Chatbot – Jotform Safe to Use in 2026?

Generally Safe

Score 100/100

AI Chatbot – Jotform has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 22d ago
Risk Assessment

The 'jotform-ai-chatbot' v3.7.1 plugin presents a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, and shortcodes with unauthenticated access significantly limits the attack surface. Furthermore, the plugin demonstrates good practices by exclusively using prepared statements for SQL queries and maintaining a high percentage of properly escaped output. The presence of nonce and capability checks further enhances security.

However, there are a few areas that warrant attention. The existence of one cron event without explicitly stated authentication checks is a minor concern, as cron events can sometimes be triggered by unauthorized users if not properly secured. The single file operation and six external HTTP requests, while not immediately indicative of a vulnerability, represent potential vectors for attack if not handled with extreme care and input validation. The plugin's vulnerability history being entirely clear is a positive indicator, suggesting a history of secure development, but it's crucial to maintain this vigilance.

In conclusion, 'jotform-ai-chatbot' v3.7.1 appears to be a well-developed plugin with a solid security foundation. The limited attack surface and good coding practices are commendable. The primary areas for potential improvement lie in ensuring the security of the cron event and scrutinizing the implementation of file operations and external requests. The lack of past vulnerabilities is a strong positive sign.

Key Concerns

  • Cron event without explicit auth check
  • File operation present
  • External HTTP requests present
Vulnerabilities
None known

AI Chatbot – Jotform Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

AI Chatbot – Jotform Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
12
58 escaped
Nonce Checks
4
Capability Checks
3
File Operations
1
External Requests
6
Bundled Libraries
0

Output Escaping

83% escaped70 total outputs
Attack Surface

AI Chatbot – Jotform Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 21
actionwp_loadedclasses\JAIC_Core.php:95
actionadmin_enqueue_scriptsjotform-ai-chatbot.php:89
actionadmin_menujotform-ai-chatbot.php:161
actionadmin_bar_menujotform-ai-chatbot.php:232
actionadmin_headjotform-ai-chatbot.php:255
actionadmin_footerjotform-ai-chatbot.php:298
actionadmin_enqueue_scriptsjotform-ai-chatbot.php:333
actionadmin_footer-plugins.phpjotform-ai-chatbot.php:457
actionactivated_pluginjotform-ai-chatbot.php:509
actiondeactivated_pluginjotform-ai-chatbot.php:525
actionupgrader_process_completejotform-ai-chatbot.php:563
actionwp_loadedjotform-ai-chatbot.php:573
actionadmin_initjotform-ai-chatbot.php:598
actionwp_headjotform-ai-chatbot.php:657
actionwp_footerjotform-ai-chatbot.php:672
actionplugins_loadedjotform-ai-chatbot.php:695
filterplugin_action_links_jotform-ai-chatbot/jotform-ai-chatbot.phpjotform-ai-chatbot.php:726
actionsave_post_pagejotform-ai-chatbot.php:766
actionsave_post_postjotform-ai-chatbot.php:767
actionwpjotform-ai-chatbot.php:802
actionjotform_ai_chatbot_cron_hookjotform-ai-chatbot.php:803

Scheduled Events 1

jotform_ai_chatbot_cron_hook
Maintenance & Trust

AI Chatbot – Jotform Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 12, 2026
PHP min version7.0
Downloads79K

Community Trust

Rating100/100
Number of ratings1
Active installs4K
Developer Profile

AI Chatbot – Jotform Developer Profile

Jotform

3 plugins · 25K total installs

88
trust score
Avg Security Score
100/100
Avg Patch Time
44 days
View full developer profile
Detection Fingerprints

How We Detect AI Chatbot – Jotform

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/jotform-ai-chatbot/lib/admin.js/wp-content/plugins/jotform-ai-chatbot/dist/app/app.js/wp-content/plugins/jotform-ai-chatbot/lib/app.css
Script Paths
wp-content/plugins/jotform-ai-chatbot/lib/admin.jswp-content/plugins/jotform-ai-chatbot/dist/app/app.js
Version Parameters
jotform-ai-chatbot/dist/app/app.css?ver=jotform-ai-chatbot/lib/admin.js?ver=jotform-ai-chatbot/dist/app/app.js?ver=

HTML / DOM Fingerprints

CSS Classes
jfLoader-wrapperjfLoader
Data Attributes
id="platform_api_url"id="jfpChatbot-app"
JS Globals
var jaic_core
FAQ

Frequently Asked Questions about AI Chatbot – Jotform