
PraisonAI Security & Risk Analysis
wordpress.org/plugins/praisonaiEffortlessly integrate a powerful, AI-driven chatbot onto your WordPress site with PraisonAI.
Is PraisonAI Safe to Use in 2026?
Generally Safe
Score 100/100PraisonAI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'praisonai' v1.0.3 plugin exhibits a generally good security posture based on the provided static analysis. The absence of dangerous functions, file operations, and the use of prepared statements for all SQL queries are strong indicators of secure coding practices. Furthermore, all observed output is properly escaped, and there is a single nonce check, which helps mitigate common cross-site scripting and request forgery vulnerabilities.
However, there are areas that warrant attention. The plugin has two AJAX handlers, and while the static analysis indicates they are protected by authorization checks, it's crucial to ensure these checks are robust and correctly implemented. The single external HTTP request could potentially be a vector if not handled securely, for instance, if it fetches or processes user-controlled data without proper validation or sanitization. The lack of any recorded vulnerabilities in its history is positive, but it also means there's no historical data to analyze for common patterns or past weaknesses.
In conclusion, 'praisonai' v1.0.3 demonstrates strengths in its handling of SQL and output escaping. The main areas for caution are the AJAX endpoints' authorization logic and the secure handling of the external HTTP request. While the vulnerability history is clean, ongoing vigilance and thorough review of the authorization mechanisms are recommended.
Key Concerns
- AJAX handlers lack explicit auth checks (0 reported)
- No REST API routes without permission callbacks
- No dangerous functions found
- 100% of SQL queries use prepared statements
- 100% of output properly escaped
- No file operations found
- One external HTTP request
- One nonce check present
- No capability checks found
- No bundled libraries
- No taint flows with unsanitized paths
- No known CVEs
PraisonAI Security Vulnerabilities
PraisonAI Release Timeline
PraisonAI Code Analysis
Output Escaping
PraisonAI Attack Surface
AJAX Handlers 2
Shortcodes 1
WordPress Hooks 4
Maintenance & Trust
PraisonAI Maintenance & Trust
Maintenance Signals
Community Trust
PraisonAI Alternatives
AI Engine – The Chatbot, AI Framework & MCP for WordPress
ai-engine
AI meets WordPress. Your site can now chat, write poetry, solve problems, and maybe make you coffee.
AI Puffer – Chat. Create. Automate. (formerly AI Power)
gpt3-ai-content-generator
Chat. Create. Automate.
AI Chatbot Builder – Create Interactive Chatbots using OpenAI API
ai-chatbot-builder
Integrate the OpenAI API to build customizable chatbots directly within WordPress.
AI Copilot – ChatGPT Chatbot & AI Engine for Post Automation
ai-copilot
Boost productivity with ChatGPT AI Engine: automate content creation, enhance Gutenberg editing, and deploy AI chatbots for smarter, faster workflows.
AI ChatBot with ChatGPT and Content Generator by AYS
ays-chatgpt-assistant
AI Writing Assistant, Chatbot, and virtual support all-in-one! Answer customer queries and generate content easily. Works with ChatGPT and Gemini.
PraisonAI Developer Profile
8 plugins · 3K total installs
How We Detect PraisonAI
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/praisonai/js/praisonai-admin.js/wp-content/plugins/praisonai/css/praisonai-chat.css/wp-content/plugins/praisonai/js/praisonai-chat.js/wp-content/plugins/praisonai/js/praisonai-admin.js/wp-content/plugins/praisonai/js/praisonai-chat.jspraisonai-adminpraisonai-chat-stylepraisonai-chat-scriptHTML / DOM Fingerprints
praisonai-chat-containerpraisonai-chat-historypraisonai-chat-formid="praisonai_openai_api_key_field"name="praisonai_openai_api_key"id="praisonai_toggle_api_key"id="praisonai-chat-input"id="praisonai-chat-submit"praisonai_chat_params/wp-json/praisonai/v1/chat<div class="praisonai-chat-container"><div class="praisonai-chat-history"></div><form class="praisonai-chat-form"><input type="text" id="praisonai-chat-input" placeholder="Ask anything..." autocomplete="off">