NA Image ALT Helper Security & Risk Analysis

wordpress.org/plugins/na-image-alt-helper

A lightweight plugin to automatically generate alternative text (ALT text) for images during upload and in bulk.

10 active installs v1.0.0 PHP 7.4+ WP 6.0+ Updated Nov 29, 2025
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is NA Image ALT Helper Safe to Use in 2026?

Generally Safe

Score 100/100

NA Image ALT Helper has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The na-image-alt-helper plugin v1.0.0 exhibits a generally good security posture based on the provided static analysis. It effectively utilizes prepared statements for all SQL queries, which significantly mitigates SQL injection risks. The plugin also demonstrates strong output escaping practices, with only a small percentage of outputs potentially unescaped. Furthermore, the inclusion of nonce and capability checks for its AJAX entry points is a positive sign of secure development. The absence of known CVEs and a clean vulnerability history further reinforce this positive assessment.

Despite these strengths, a critical taint flow with an unsanitized path has been identified. While the total number of flows is low, this single critical issue warrants attention as it could potentially lead to path traversal or arbitrary file read/write vulnerabilities if exploited. The limited attack surface (2 AJAX handlers) is well-protected, but this single taint flow represents the most significant security concern. In conclusion, the plugin is built with many good security practices, but the identified critical taint flow is a serious vulnerability that needs to be addressed to achieve a robust security profile.

Key Concerns

  • Critical severity taint flow found
  • Low percentage of output escaping
Vulnerabilities
None known

NA Image ALT Helper Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

NA Image ALT Helper Release Timeline

v1.0.0Current
Code Analysis
Analyzed Mar 17, 2026

NA Image ALT Helper Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
12 prepared
Unescaped Output
1
25 escaped
Nonce Checks
3
Capability Checks
3
File Operations
0
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared12 total queries

Output Escaping

96% escaped26 total outputs
Data Flows
1 unsanitized

Data Flow Analysis

1 flows1 with unsanitized paths
<class-aatg> (includes\class-aatg.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

NA Image ALT Helper Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_aatg_generateincludes\class-aatg.php:19
authwp_ajax_aatg_revertincludes\class-aatg.php:20
WordPress Hooks 5
actionadmin_menuadmin\class-aatg-admin.php:22
actionadmin_enqueue_scriptsadmin\class-aatg-admin.php:23
actionadd_attachmentincludes\auto-upload.php:14
actionplugins_loadedna-image-alt-helper.php:33
actionadd_attachmentna-image-alt-helper.php:42
Maintenance & Trust

NA Image ALT Helper Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 29, 2025
PHP min version7.4
Downloads188

Community Trust

Rating0/100
Number of ratings0
Active installs10
Alternatives

NA Image ALT Helper Alternatives

No alternatives data available yet.

Developer Profile

NA Image ALT Helper Developer Profile

najir29

3 plugins · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect NA Image ALT Helper

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/na-image-alt-helper/assets/admin.css/wp-content/plugins/na-image-alt-helper/assets/admin.js
Version Parameters
na-image-alt-helper/assets/admin.css?ver=na-image-alt-helper/assets/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
aatg-wrap
HTML Comments
<!-- নিরাপদভাবে POST ডাটা নেওয়া -->
Data Attributes
name="aatg_settings[extra_keywords]"name="aatg_settings[pattern_default]"name="aatg_settings[pattern_product]"name="aatg_settings[pattern_unattached]"name="aatg_settings[max_length]"name="aatg_settings[language]"+6 more
JS Globals
AATG
FAQ

Frequently Asked Questions about NA Image ALT Helper