Sentient AI Security & Risk Analysis

wordpress.org/plugins/sentient-ai

Sentient AI is an AI-powered chatbot plugin for WordPress that provides intelligent responses and FAQ management.

0 active installs v1.1.0 PHP 7.4+ WP 5.8+ Updated Feb 25, 2026
aichatbotcustomer-supportfaqopenai
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Sentient AI Safe to Use in 2026?

Generally Safe

Score 100/100

Sentient AI has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The Sentient AI plugin v1.1.0 exhibits a generally strong security posture, with several key indicators of good development practices. Notably, the static analysis reveals a complete absence of critical or high-severity taint flows, and all identified SQL queries utilize prepared statements, which significantly mitigates SQL injection risks. The plugin also demonstrates a good approach to output escaping, with a high percentage of outputs being properly handled. Furthermore, the lack of known CVEs and a clean vulnerability history suggest a history of secure development or effective vulnerability management.

However, there are areas for potential improvement. The presence of 3 AJAX handlers, while currently showing no unprotected entry points, represents a potential attack surface that requires continuous vigilance. The 12 external HTTP requests, while not explicitly flagged as insecure, warrant careful review to ensure they do not introduce vulnerabilities through third-party services. The overall lack of critical findings is a positive sign, but the absence of security vulnerabilities in its history could also be due to a lack of historical auditing or a low prevalence of use, rather than an absolute guarantee of future security. The plugin is in a relatively good state, but ongoing monitoring and code reviews are recommended.

Key Concerns

  • AJAX handlers present, potential attack surface
  • External HTTP requests present, review needed
Vulnerabilities
None known

Sentient AI Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Sentient AI Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
8 prepared
Unescaped Output
23
152 escaped
Nonce Checks
7
Capability Checks
8
File Operations
0
External Requests
12
Bundled Libraries
0

SQL Query Safety

89% prepared9 total queries

Output Escaping

87% escaped175 total outputs
Data Flows
All sanitized

Data Flow Analysis

2 flows
render_logs_page (src\Admin\Admin_UI.php:513)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sentient AI Attack Surface

Entry Points4
Unprotected0

AJAX Handlers 3

authwp_ajax_sentient_ai_preview_training_contentsrc\Admin\Admin_Train.php:12
authwp_ajax_sentient_ai_handle_querysrc\Includes\API_Handler.php:11
noprivwp_ajax_sentient_ai_handle_querysrc\Includes\API_Handler.php:12

Shortcodes 1

[sentient_ai_chat] src\Includes\Shortcodes.php:9
WordPress Hooks 16
actionplugins_loadedsentient-ai.php:45
actionadmin_menusrc\Admin\Admin_Import.php:12
actionadmin_enqueue_scriptssrc\Admin\Admin_Import.php:13
actionadmin_menusrc\Admin\Admin_Train.php:11
actionadmin_enqueue_scriptssrc\Admin\Admin_Train.php:13
actionadmin_menusrc\Admin\Admin_UI.php:31
actionadmin_initsrc\Admin\Admin_UI.php:32
actionadmin_noticessrc\Admin\Admin_UI.php:33
actionadmin_enqueue_scriptssrc\Admin\Admin_UI.php:34
filterdefault_titlesrc\Admin\Admin_UI.php:35
filterdefault_contentsrc\Admin\Admin_UI.php:36
actionwp_enqueue_scriptssrc\Includes\Chatbot_Loader.php:9
actionwp_footersrc\Includes\Chatbot_Loader.php:10
actioninitsrc\Includes\FAQ_Manager.php:10
actionadd_meta_boxessrc\Includes\FAQ_Manager.php:11
actionsave_postsrc\Includes\FAQ_Manager.php:12
Maintenance & Trust

Sentient AI Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedFeb 25, 2026
PHP min version7.4
Downloads159

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Sentient AI Developer Profile

Maidul

10 plugins · 1K total installs

77
trust score
Avg Security Score
97/100
Avg Patch Time
126 days
View full developer profile
Detection Fingerprints

How We Detect Sentient AI

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sentient-ai/assets/css/admin.css
Version Parameters
sentient-ai/assets/css/admin.css?ver=

HTML / DOM Fingerprints

CSS Classes
sentientai-import-faqs
Data Attributes
name="sentient_ai_import_nonce"name="sentient_ai_import_submit"name="faq_csv"
FAQ

Frequently Asked Questions about Sentient AI