
Promptor Security & Risk Analysis
wordpress.org/plugins/promptorAI chatbot for WordPress — no API key required. Answer visitor questions, capture leads, and turn traffic into customers automatically.
Is Promptor Safe to Use in 2026?
Generally Safe
Score 100/100Promptor has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'promptor' v1.3.0 exhibits a mixed security posture. On the positive side, it demonstrates strong adherence to secure coding practices with a high percentage of SQL queries using prepared statements and a very high rate of properly escaped output. The absence of known CVEs and bundled libraries is also a good sign. However, a significant concern arises from the substantial attack surface presented by 44 AJAX handlers, of which 30 are completely unprotected by authentication checks. Furthermore, the taint analysis reveals 8 flows with unsanitized paths and 5 high-severity taint flows, indicating potential vulnerabilities where user input might not be adequately validated before being used in sensitive operations. While there's no historical vulnerability data, the presence of these taint flows suggests potential weaknesses that could be exploited if left unaddressed.
Key Concerns
- Unprotected AJAX handlers
- High severity unsanitized taint flows
- Unsanitized paths in taint flows
Promptor Security Vulnerabilities
Promptor Release Timeline
Promptor Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
Promptor Attack Surface
AJAX Handlers 44
Shortcodes 3
WordPress Hooks 41
Maintenance & Trust
Promptor Maintenance & Trust
Maintenance Signals
Community Trust
Promptor Alternatives
AI Chatbot for WordPress by Customerly
customerly
AI Chatbot to support customers, create engaging messages and send automated emails.
AI Chatbot, Live Chat & Lead Generation for WordPress
ai-chatbot-live-chat-for-wordpress-using-chatgpt
Add a WordPress AI Chatbot to your site powered by Google Gemini. Manage AI agents, knowledge bases, live chat, and analytics from your dashboard.
Zeno – AI-Powered Chatbot
zeno-chatbot-ai
An AI-powered WordPress automation chatbot plugin that helps you automate support, engage visitors, and answer questions using OpenAI or Google Gemini
Gapify AI Customer Communication
gapify-ai-customer-communication
AI-powered customer support and chat widget. Automate responses, increase sales, and provide 24/7 customer service with Gapify's intelligent chatbot.
Free AI Lead Generation Chatbot – ChatSale
ai-lead-form-builder-chatsale
ChatSale is a ChatGPT chatbot for a website that turns website visitors into qualified leads and booked appointments through smart conversations.
Promptor Developer Profile
1 plugin · 0 total installs
How We Detect Promptor
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/promptor/css/promptor-frontend.css/wp-content/plugins/promptor/js/promptor-frontend.js/wp-content/plugins/promptor/js/promptor-frontend.jspromptor/css/promptor-frontend.css?ver=promptor/js/promptor-frontend.js?ver=HTML / DOM Fingerprints
<!-- promptor_widget --><!-- promptor_chat --><!-- promptor_recommendations --><!-- promptor_leads -->data-promptor-widgetdata-promptor-chatdata-promptor-recommendationsdata-promptor-leadsdata-promptor-idwindow.PromptorConfigvar PromptorConfig/wp-json/promptor/v1/search/wp-json/promptor/v1/recommendations/wp-json/promptor/v1/leads[promptor_widget][promptor_chat][promptor_recommendations][promptor_leads]