Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Security & Risk Analysis

wordpress.org/plugins/oberon-chat

Stop losing customers to slow support. Add a 24/7 AI sales and support agent to your site in minutes. Connect OpenAI, Google Gemini, or Anthropic Clau …

0 active installs v2.9.12 PHP 8.0+ WP 6.0+ Updated Nov 26, 2025
aichatbotchatgptclaudegemini
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Safe to Use in 2026?

Generally Safe

Score 100/100

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 5mo ago
Risk Assessment

The 'oberon-chat' plugin v2.9.12 presents a generally good security posture with a focus on secure coding practices. The static analysis indicates a minimal attack surface, with only one AJAX handler, and importantly, no apparent unprotected entry points. The plugin also demonstrates a strong commitment to security by utilizing prepared statements for a significant majority of its SQL queries and properly escaping a high percentage of its outputs. Furthermore, the absence of any recorded vulnerabilities in its history is a positive sign, suggesting a well-maintained and secure codebase.

Key Concerns

  • Flows with unsanitized paths
  • Taint analysis high severity flows
  • SQL queries using prepared statements percentage (77%)
  • Output escaping percentage (89%)
Vulnerabilities
None known

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Release Timeline

v2.9.12Current
v2.9.11
v2.9.10
v2.9.8
v2.9.7
v2.9.6
v2.9.5
v2.9.4
v2.9.3
v2.9.2
v2.9.1
v2.9.0
v2.8.32
v2.8.31
Code Analysis
Analyzed Apr 6, 2026

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Code Analysis

Dangerous Functions
0
Raw SQL Queries
3
10 prepared
Unescaped Output
50
389 escaped
Nonce Checks
6
Capability Checks
6
File Operations
1
External Requests
8
Bundled Libraries
0

SQL Query Safety

77% prepared13 total queries

Output Escaping

89% escaped439 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

4 flows2 with unsanitized paths
<admin-transcripts> (admin-transcripts.php:0)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_oberon_fetch_llm_modelsincludes/shared/plugin-core.php:180
WordPress Hooks 8
filteroberon_chat_feature_flagsincludes/community/loader.php:12
actionadmin_menuincludes/shared/plugin-core.php:161
actionadmin_initincludes/shared/plugin-core.php:162
actionadmin_initincludes/shared/plugin-core.php:163
actionadmin_noticesincludes/shared/plugin-core.php:164
actionadmin_enqueue_scriptsincludes/shared/plugin-core.php:165
actionwp_enqueue_scriptsincludes/shared/plugin-core.php:168
actioninitincludes/shared/plugin-core.php:786
Maintenance & Trust

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 26, 2025
PHP min version8.0
Downloads312

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude) Developer Profile

oberonie

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/oberon-chat/assets/css/oberon-chat.css/wp-content/plugins/oberon-chat/assets/js/oberon-chat.js/wp-content/plugins/oberon-chat/assets/js/chatbox.js/wp-content/plugins/oberon-chat/assets/js/typing-indicator.js/wp-content/plugins/oberon-chat/assets/js/message-viewer.js/wp-content/plugins/oberon-chat/assets/js/ui.js/wp-content/plugins/oberon-chat/assets/js/vendor/marked.min.js/wp-content/plugins/oberon-chat/assets/js/vendor/dompurify.min.js+11 more
Script Paths
/wp-content/plugins/oberon-chat/assets/js/oberon-chat.js/wp-content/plugins/oberon-chat/assets/js/chatbox.js/wp-content/plugins/oberon-chat/assets/js/typing-indicator.js/wp-content/plugins/oberon-chat/assets/js/message-viewer.js/wp-content/plugins/oberon-chat/assets/js/ui.js/wp-content/plugins/oberon-chat/assets/js/vendor/marked.min.js+12 more
Version Parameters
oberon-chat/assets/css/oberon-chat.css?ver=oberon-chat/assets/js/oberon-chat.js?ver=oberon-chat/assets/js/chatbox.js?ver=oberon-chat/assets/js/typing-indicator.js?ver=oberon-chat/assets/js/message-viewer.js?ver=oberon-chat/assets/js/ui.js?ver=oberon-chat/assets/js/vendor/marked.min.js?ver=oberon-chat/assets/js/vendor/dompurify.min.js?ver=oberon-chat/assets/js/vendor/showdown.min.js?ver=oberon-chat/assets/js/vendor/marked-extended.min.js?ver=oberon-chat/assets/js/vendor/katex.min.js?ver=oberon-chat/assets/js/vendor/highlight.min.js?ver=oberon-chat/assets/js/vendor/quill.min.js?ver=oberon-chat/assets/js/vendor/quill-emoji.min.js?ver=oberon-chat/assets/js/vendor/quill-image-resize-module.min.js?ver=oberon-chat/assets/js/vendor/quill-paste-smart.min.js?ver=oberon-chat/assets/js/vendor/quill-cursors.min.js?ver=oberon-chat/assets/js/vendor/quill-delta.min.js?ver=oberon-chat/assets/js/vendor/quill-richtext-strip.min.js?ver=

HTML / DOM Fingerprints

CSS Classes
oberon-chat-bubbleoberon-chat-messageoberon-chat-input-areaoberon-chat-send-buttonoberon-chat-close-buttonoberon-chat-minimize-buttonoberon-chat-typing-indicator
HTML Comments
<!-- oberon_chat_shortcode --><!-- BEGIN oberon_chat --><!-- END oberon_chat -->
Data Attributes
data-oberon-chat-iddata-oberon-chat-session-iddata-oberon-chat-message-typedata-oberon-chat-sender
JS Globals
window.OberonChatConfigwindow.OberonChat
REST Endpoints
/wp-json/oberon-chat/v1/send-message/wp-json/oberon-chat/v1/close-session/wp-json/oberon-chat/v1/minimize-session
Shortcode Output
[oberon_chat]
FAQ

Frequently Asked Questions about Oberon Chat – AI Chatbot, Support Agent & Lead Generator (ChatGPT, Gemini, Claude)