OGEEAT Security & Risk Analysis

wordpress.org/plugins/ogeeat

Rank in AI, not just in Google. E-E-A-T schemas, GEO citability score, llms.txt and AI Crawler Firewall. The post-SEO plugin for WordPress.

0 active installs v2.2.1 PHP 7.4+ WP 6.0+ Updated Apr 16, 2026
eeatopen-graphschemaseosocial-media
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is OGEEAT Safe to Use in 2026?

Generally Safe

Score 100/100

OGEEAT has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "ogeeat" v2.2.1 plugin exhibits a generally strong security posture based on the provided static analysis. The plugin demonstrates excellent practices by using prepared statements for all SQL queries and having a near-perfect output escaping rate. Furthermore, the complete absence of known vulnerabilities, critical taint flows, and dangerous functions is highly encouraging. The presence of a good number of nonce and capability checks further bolsters its defenses.

However, a significant concern arises from the attack surface. The plugin exposes 5 AJAX handlers without authentication checks. This creates a notable vulnerability potential, as an unauthenticated user could potentially interact with these endpoints and trigger unintended actions. While no critical taint flows were identified, the lack of authorization on these entry points means that malicious actors could leverage them for various exploits if any underlying logic is susceptible.

In conclusion, while "ogeeat" v2.2.1 shows commendable development in secure coding practices for its database interactions and output handling, the unprotected AJAX endpoints represent a clear security weakness. The lack of past vulnerabilities is a positive indicator of careful development, but it does not mitigate the immediate risks posed by the exposed AJAX handlers.

Key Concerns

  • Unprotected AJAX handlers
Vulnerabilities
None known

OGEEAT Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

OGEEAT Release Timeline

v2.2.1Current
v2.2.0
v2.1.7
v2.1.6
v2.1.5
v2.1.4
v2.1.3
v1.2.3
Code Analysis
Analyzed Apr 16, 2026

OGEEAT Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
32 prepared
Unescaped Output
14
1385 escaped
Nonce Checks
15
Capability Checks
23
File Operations
2
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared32 total queries

Output Escaping

99% escaped1399 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

3 flows
handle_import (includes/class-ogeeat-portability.php:76)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
5 unprotected

OGEEAT Attack Surface

Entry Points9
Unprotected5

AJAX Handlers 6

authwp_ajax_ogeeat_shadow_dataincludes/class-ogeeat-shadow.php:85
authwp_ajax_ogeeat_firewall_testincludes/class-ogeeat.php:62
authwp_ajax_ogeeat_dismiss_seo_noticeincludes/class-ogeeat.php:735
authwp_ajax_ogeeat_dismiss_https_noticeincludes/class-ogeeat.php:741
authwp_ajax_ogeeat_compute_geoincludes/class-ogeeat.php:747
authwp_ajax_ogeeat_regenerate_llmsincludes/class-ogeeat.php:759

Shortcodes 3

[ogeeat_author] includes/class-ogeeat-authorbox.php:14
[ogeeat_references] includes/class-ogeeat-references.php:39
[ogeeat_cite] includes/class-ogeeat-references.php:40
WordPress Hooks 61
actionadmin_menuincludes/class-ogeeat-audit.php:18
actionadmin_enqueue_scriptsincludes/class-ogeeat-audit.php:19
actionshow_user_profileincludes/class-ogeeat-author.php:30
actionedit_user_profileincludes/class-ogeeat-author.php:31
actionpersonal_options_updateincludes/class-ogeeat-author.php:32
actionedit_user_profile_updateincludes/class-ogeeat-author.php:33
actionadmin_enqueue_scriptsincludes/class-ogeeat-author.php:34
filterthe_contentincludes/class-ogeeat-authorbox.php:12
actionwp_enqueue_scriptsincludes/class-ogeeat-authorbox.php:13
actionwp_enqueue_scriptsincludes/class-ogeeat-badge.php:16
actionwp_footerincludes/class-ogeeat-badge.php:17
actionadmin_menuincludes/class-ogeeat-docs.php:14
actionadmin_enqueue_scriptsincludes/class-ogeeat-docs.php:15
actionwp_headincludes/class-ogeeat-eeat.php:13
filterrobots_txtincludes/class-ogeeat-firewall.php:46
actionsend_headersincludes/class-ogeeat-firewall.php:47
actionadmin_noticesincludes/class-ogeeat-firewall.php:48
actionadmin_initincludes/class-ogeeat-import.php:15
actionadmin_noticesincludes/class-ogeeat-import.php:16
actioninitincludes/class-ogeeat-llms.php:40
actioninitincludes/class-ogeeat-llms.php:41
filterquery_varsincludes/class-ogeeat-llms.php:42
actiontemplate_redirectincludes/class-ogeeat-llms.php:43
actionwp_headincludes/class-ogeeat-llms.php:44
actiontransition_post_statusincludes/class-ogeeat-llms.php:45
filterredirect_canonicalincludes/class-ogeeat-llms.php:46
actionupdated_optionincludes/class-ogeeat-llms.php:47
actionadmin_menuincludes/class-ogeeat-llms.php:51
actionadmin_post_ogeeat_llms_saveincludes/class-ogeeat-llms.php:52
actionadd_meta_boxesincludes/class-ogeeat-metabox.php:14
actionsave_postincludes/class-ogeeat-metabox.php:15
actionadmin_enqueue_scriptsincludes/class-ogeeat-metabox.php:16
actioninitincludes/class-ogeeat-metabox.php:17
actionwp_headincludes/class-ogeeat-og.php:13
actionadmin_initincludes/class-ogeeat-portability.php:18
actionadmin_initincludes/class-ogeeat-portability.php:19
actionadmin_initincludes/class-ogeeat-portability.php:20
actionadmin_noticesincludes/class-ogeeat-portability.php:21
filterthe_contentincludes/class-ogeeat-references.php:37
actionwp_enqueue_scriptsincludes/class-ogeeat-references.php:38
actionadmin_menuincludes/class-ogeeat-settings.php:14
actionadmin_initincludes/class-ogeeat-settings.php:15
actionadmin_enqueue_scriptsincludes/class-ogeeat-settings.php:16
actionadmin_menuincludes/class-ogeeat-setup.php:17
actionadmin_initincludes/class-ogeeat-setup.php:18
actionadmin_initincludes/class-ogeeat-setup.php:19
actionadmin_enqueue_scriptsincludes/class-ogeeat-setup.php:20
actionadmin_menuincludes/class-ogeeat-shadow.php:72
actiontemplate_redirectincludes/class-ogeeat-shadow.php:81
actionogeeat_shadow_cleanupincludes/class-ogeeat-shadow.php:89
filterthe_contentincludes/class-ogeeat-share.php:55
actionwp_enqueue_scriptsincludes/class-ogeeat-share.php:56
actionadmin_noticesincludes/class-ogeeat-trust.php:22
actionsave_post_pageincludes/class-ogeeat-trust.php:24
actionwp_update_nav_menuincludes/class-ogeeat-trust.php:25
actionadmin_noticesincludes/class-ogeeat.php:137
actionadmin_initincludes/class-ogeeat.php:188
actionadmin_enqueue_scriptsincludes/class-ogeeat.php:196
actionwp_dashboard_setupincludes/class-ogeeat.php:251
actionadmin_noticesogeeat.php:28
actionplugins_loadedogeeat.php:59

Scheduled Events 1

ogeeat_shadow_cleanup
Maintenance & Trust

OGEEAT Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 16, 2026
PHP min version7.4
Downloads235

Community Trust

Rating100/100
Number of ratings1
Active installs0
Developer Profile

OGEEAT Developer Profile

wpformation

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect OGEEAT

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/ogeeat/assets/css/admin.css
Version Parameters
ogeeat-admin

HTML / DOM Fingerprints

CSS Classes
ogeeat-settings
FAQ

Frequently Asked Questions about OGEEAT