NapolAI Connector Security & Risk Analysis

wordpress.org/plugins/napolai-connector

Connecte NapolAI à WordPress via une API REST sécurisée pour automatiser la création et la publication de contenus SEO optimisés en un clic.

40 active installs v1.0.0 PHP + WP 5.0+ Updated Mar 31, 2025
ai-contentai-seoarticle-writerautomationnapol-ai
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is NapolAI Connector Safe to Use in 2026?

Generally Safe

Score 92/100

NapolAI Connector has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "napolai-connector" v1.0.0 plugin exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of dangerous functions, the exclusive use of prepared statements for SQL queries, and 100% proper output escaping are excellent indicators of secure coding practices. Furthermore, the plugin has no recorded CVEs, indicating a clean security history. The limited attack surface, with all identified entry points (REST API routes and AJAX handlers) either secured by permission callbacks or, in this case, not explicitly listed as unprotected, further bolsters its security. The presence of nonce checks and a single file operation are not inherently concerning without further context on their implementation, but the complete lack of capability checks on its entry points is a notable area for improvement, as it could potentially lead to privilege escalation if not handled correctly by the underlying framework or other plugin interactions.

Key Concerns

  • No capability checks on entry points
Vulnerabilities
None known

NapolAI Connector Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

NapolAI Connector Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
8 escaped
Nonce Checks
2
Capability Checks
0
File Operations
1
External Requests
0
Bundled Libraries
0

Output Escaping

100% escaped8 total outputs
Attack Surface

NapolAI Connector Attack Surface

Entry Points6
Unprotected0

REST API Routes 6

GET/wp-json/napocovicoaipreuseevico/v1/get-noncenapolai-connector.php:276
GET/wp-json/napocovicoaipreuseevico/v1/categoriesnapolai-connector.php:313
POST/wp-json/napocovicoaipreuseevico/v1/postnapolai-connector.php:338
POST/wp-json/napocovicoaipreuseevico/v1/upload/napolai-connector.php:365
GET/wp-json/napocovicoaipreuseevico/v1/site-info/napolai-connector.php:390
POST/wp-json/napocovicoaipreuseevico/v1/upload-base64napolai-connector.php:422
WordPress Hooks 7
actionadmin_menunapolai-connector.php:38
actionadmin_headnapolai-connector.php:47
actionadmin_enqueue_scriptsnapolai-connector.php:73
filterupload_mimesnapolai-connector.php:114
actionrest_api_initnapolai-connector.php:268
actionrest_api_initnapolai-connector.php:275
actionrest_api_initnapolai-connector.php:457
Maintenance & Trust

NapolAI Connector Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedMar 31, 2025
PHP min version
Downloads479

Community Trust

Rating100/100
Number of ratings1
Active installs40
Developer Profile

NapolAI Connector Developer Profile

Arevico

5 plugins · 150 total installs

79
trust score
Avg Security Score
78/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect NapolAI Connector

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/napolai-connector/assets/css/admin-style.css/wp-content/plugins/napolai-connector/assets/js/admin-script.js
Script Paths
/wp-content/plugins/napolai-connector/assets/js/admin-script.js
Version Parameters
napolai-connector/assets/css/admin-style.css?ver=napolai-connector/assets/js/admin-script.js?ver=

HTML / DOM Fingerprints

CSS Classes
wp-menu-image
Data Attributes
id="napocovicoaipreuseevico_api_key"id="copy-api-key-btn"name="napocovicoaipreuseevico_regenerate_api_key"id="napocovicoaipreuseevico_nonce_field"name="napocovicoaipreuseevico_nonce_field"
REST Endpoints
/wp-json/napolai-connector/v1/categories/wp-json/napolai-connector/v1/create-post/wp-json/napolai-connector/v1/upload-media/wp-json/napolai-connector/v1/upload-media-base64
FAQ

Frequently Asked Questions about NapolAI Connector