Pluggix AltGen AI Security & Risk Analysis

wordpress.org/plugins/pluggix-altgen-ai

Generate alt text, captions, and image descriptions with AI to improve accessibility and SEO.

0 active installs v1.2.4 PHP 7.4+ WP 5.8+ Updated Mar 9, 2026
accessibilityaialt-textimagesseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Pluggix AltGen AI Safe to Use in 2026?

Generally Safe

Score 100/100

Pluggix AltGen AI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "pluggix-altgen-ai" v1.2.4 plugin demonstrates a generally strong security posture based on the static analysis. The plugin has a good number of entry points, but crucially, all identified entry points have authentication checks. The code also shows diligent use of prepared statements for SQL queries and a very high percentage of properly escaped output, minimizing risks of SQL injection and XSS respectively. The presence of numerous nonce and capability checks further strengthens its defenses against common WordPress vulnerabilities. The absence of any recorded vulnerabilities in its history is a significant positive indicator of its past security quality.

Key Concerns

  • Flows with unsanitized paths found
  • Unsanitized path flow with critical severity
  • File operations performed
  • External HTTP requests made
Vulnerabilities
None known

Pluggix AltGen AI Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Pluggix AltGen AI Release Timeline

v1.2.4Current
v1.2.3
v1.2.2
Code Analysis
Analyzed Apr 16, 2026

Pluggix AltGen AI Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
166 escaped
Nonce Checks
25
Capability Checks
14
File Operations
5
External Requests
8
Bundled Libraries
0

Output Escaping

98% escaped169 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
test_api_connection (pluggix-altgen-ai.php:2540)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Pluggix AltGen AI Attack Surface

Entry Points22
Unprotected0

AJAX Handlers 22

authwp_ajax_altgen_clear_fieldsincludes/ajax.php:7
authwp_ajax_altgen_get_clear_progressincludes/ajax.php:107
authwp_ajax_altgen_get_site_statusincludes/ajax.php:230
authwp_ajax_altgen_clear_jwtincludes/ajax.php:282
authwp_ajax_altgen_validate_jwtincludes/ajax.php:296
authwp_ajax_altgen_start_bulkpluggix-altgen-ai.php:1746
authwp_ajax_altgen_get_progresspluggix-altgen-ai.php:1747
authwp_ajax_altgen_get_upload_progresspluggix-altgen-ai.php:1748
authwp_ajax_altgen_get_site_status_v2pluggix-altgen-ai.php:1749
authwp_ajax_altgen_list_missing_altpluggix-altgen-ai.php:1750
authwp_ajax_altgen_process_upload_batchpluggix-altgen-ai.php:1751
authwp_ajax_altgen_save_bulk_optionspluggix-altgen-ai.php:1752
authwp_ajax_altgen_save_auto_optionspluggix-altgen-ai.php:1753
authwp_ajax_altgen_queue_statuspluggix-altgen-ai.php:1754
authwp_ajax_altgen_queue_pausepluggix-altgen-ai.php:1755
authwp_ajax_altgen_queue_resumepluggix-altgen-ai.php:1756
authwp_ajax_altgen_queue_clearpluggix-altgen-ai.php:1757
authwp_ajax_altgen_test_apipluggix-altgen-ai.php:1758
authwp_ajax_altgen_save_ai_modelpluggix-altgen-ai.php:1759
authwp_ajax_altgen_kick_processpluggix-altgen-ai.php:1760
authwp_ajax_altgen_get_plan_statuspluggix-altgen-ai.php:1761
authwp_ajax_altgen_save_jwt_popuppluggix-altgen-ai.php:1762
WordPress Hooks 11
filterhttp_request_argspluggix-altgen-ai.php:351
actionhttp_api_debugpluggix-altgen-ai.php:370
actioninitpluggix-altgen-ai.php:1737
actionadd_attachmentpluggix-altgen-ai.php:1738
actionaltgen_process_upload_batch_hookpluggix-altgen-ai.php:1739
actionwp_generate_attachment_metadatapluggix-altgen-ai.php:1740
actionadmin_menupluggix-altgen-ai.php:1741
actionadmin_initpluggix-altgen-ai.php:1742
actionadmin_enqueue_scriptspluggix-altgen-ai.php:1743
actionaltgen_delayed_generate_hookpluggix-altgen-ai.php:1764
actionaltgen_reconcile_uploads_hookpluggix-altgen-ai.php:1765

Scheduled Events 4

altgen_delayed_generate_hook
altgen_process_upload_batch_hook
altgen_process_upload_batch_hook
altgen_reconcile_uploads_hook
Maintenance & Trust

Pluggix AltGen AI Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 9, 2026
PHP min version7.4
Downloads214

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Pluggix AltGen AI Developer Profile

pluggixwp

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Pluggix AltGen AI

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/pluggix-altgen-ai/admin/css/altgen-admin.css/wp-content/plugins/pluggix-altgen-ai/admin/js/altgen-admin.js/wp-content/plugins/pluggix-altgen-ai/public/css/altgen-public.css/wp-content/plugins/pluggix-altgen-ai/public/js/altgen-public.js
Script Paths
/wp-content/plugins/pluggix-altgen-ai/admin/js/altgen-admin.js/wp-content/plugins/pluggix-altgen-ai/public/js/altgen-public.js
Version Parameters
pluggix-altgen-ai/admin/css/altgen-admin.css?ver=pluggix-altgen-ai/admin/js/altgen-admin.js?ver=pluggix-altgen-ai/public/css/altgen-public.css?ver=pluggix-altgen-ai/public/js/altgen-public.js?ver=

HTML / DOM Fingerprints

CSS Classes
altgen-settings-sectionaltgen-form-fieldaltgen-labelaltgen-inputaltgen-textareaaltgen-buttonaltgen-noticealtgen-loading-spinner
HTML Comments
<!-- Pluggix AltGen AI Settings Start --><!-- Pluggix AltGen AI Settings End --><!-- Pluggix AltGen AI Widget Start --><!-- Pluggix AltGen AI Widget End -->
Data Attributes
data-altgen-modeldata-altgen-providerdata-altgen-post-id
JS Globals
altgen_admin_paramsaltgen_public_params
Shortcode Output
[pluggix_altgen_ai_widget]
FAQ

Frequently Asked Questions about Pluggix AltGen AI