Roundups.ai – Instant Product Roundups With AI Security & Risk Analysis

wordpress.org/plugins/roundups-ai

Let AI research products, write SEO-friendly guides, and help you earn affiliate income by helping others make informed buying decisions.

20 active installs v0.0.4 PHP 7.4+ WP 5.0+ Updated Nov 24, 2025
affiliate-marketingcontentecommerceroundupsseo
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Roundups.ai – Instant Product Roundups With AI Safe to Use in 2026?

Generally Safe

Score 100/100

Roundups.ai – Instant Product Roundups With AI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The roundups-ai plugin v0.0.4 exhibits a strong security posture based on the provided static analysis and vulnerability history. The plugin demonstrates good security practices by utilizing prepared statements for all SQL queries, proper output escaping on nearly all outputs, and implementing nonce and capability checks for its entry points. The absence of critical or high severity taint flows further indicates robust input validation and sanitization within the analyzed code paths.

The plugin's attack surface is minimal, with only one AJAX handler, and importantly, this handler appears to be protected with appropriate checks. The lack of any recorded vulnerabilities, past or present, suggests a history of responsible development and maintenance. The plugin does not rely on bundled libraries, removing a common vector for vulnerabilities from outdated dependencies.

While the plugin shows excellent security hygiene, the presence of two external HTTP requests and one file operation, though not flagged as immediately dangerous, represent potential points of failure or future vulnerability if not handled with extreme care. However, based solely on the data provided, the plugin is considered very secure, with no immediate or significant risks identified.

Vulnerabilities
None known

Roundups.ai – Instant Product Roundups With AI Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Roundups.ai – Instant Product Roundups With AI Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
1
25 escaped
Nonce Checks
2
Capability Checks
2
File Operations
1
External Requests
2
Bundled Libraries
0

Output Escaping

96% escaped26 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
handle_create_draft (includes\class-roundups-admin.php:176)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Roundups.ai – Instant Product Roundups With AI Attack Surface

Entry Points1
Unprotected0

AJAX Handlers 1

authwp_ajax_roundupsai_create_draftincludes\class-roundups-admin.php:12
WordPress Hooks 11
actionadmin_menuincludes\class-roundups-admin.php:8
actionadmin_initincludes\class-roundups-admin.php:9
actionadmin_enqueue_scriptsincludes\class-roundups-admin.php:10
actionadmin_post_roundupsai_fetch_roundupsincludes\class-roundups-admin.php:11
actionrest_api_initincludes\class-roundups-api.php:9
actioninitincludes\class-roundups-api.php:12
actionparse_requestincludes\class-roundups-api.php:13
actiontemplate_redirectincludes\class-roundups-api.php:14
actioninitroundups-ai.php:39
actioninitroundups-ai.php:82
actionplugins_loadedroundups-ai.php:84
Maintenance & Trust

Roundups.ai – Instant Product Roundups With AI Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 24, 2025
PHP min version7.4
Downloads173

Community Trust

Rating0/100
Number of ratings0
Active installs20
Developer Profile

Roundups.ai – Instant Product Roundups With AI Developer Profile

roundups

1 plugin · 20 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Roundups.ai – Instant Product Roundups With AI

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/roundups-ai/assets/css/admin.css/wp-content/plugins/roundups-ai/assets/js/admin.js
Script Paths
/wp-content/plugins/roundups-ai/assets/js/admin.js
Version Parameters
roundups-ai/assets/css/admin.css?ver=roundups-ai/assets/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
connection-noticeendpoints-listroundups-listarticlearticle-contentarticle-actionsarticle-titlearticle-date+1 more
Data Attributes
data-nonce
JS Globals
roundupsAdmin
REST Endpoints
/wp-json/roundups-ai/v1/articles/wp-json/wp/v2/posts
FAQ

Frequently Asked Questions about Roundups.ai – Instant Product Roundups With AI