Stella Smart FAQ – AI FAQ Generator & Schema Builder Security & Risk Analysis

wordpress.org/plugins/stella-smart-faq-ai-faq-generator-schema-builder

AI-powered FAQ generator that creates, manages, and analyzes FAQs. Improve SEO with automatic JSON-LD FAQ Schema and provide better user support.

0 active installs v1.0.0 PHP 7.4+ WP 6.0+ Updated Apr 13, 2026
aifaqschemaseosupport
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Stella Smart FAQ – AI FAQ Generator & Schema Builder Safe to Use in 2026?

Generally Safe

Score 100/100

Stella Smart FAQ – AI FAQ Generator & Schema Builder has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "stella-smart-faq-ai-faq-generator-schema-builder" v1.0.0 plugin demonstrates a strong security posture in several key areas. The code analysis reveals that all identified entry points (AJAX handlers, REST API routes, and shortcodes) have appropriate authentication or permission checks, and there are no instances of dangerous functions, raw SQL queries, or unescaped output. The plugin also diligently implements nonce checks and capability checks, further reinforcing its security. The absence of any recorded vulnerabilities in its history is a positive indicator.

However, the taint analysis identifies two flows with unsanitized paths, both flagged as high severity. While the static analysis doesn't reveal the exact nature of these unsanitized paths, they represent a significant potential risk, suggesting that user-supplied input might be processed in a way that could lead to vulnerabilities like directory traversal or command injection if not handled carefully within the application logic. The presence of external HTTP requests, while not inherently a vulnerability, adds a minor external dependency risk. The plugin's attack surface is relatively small, and the lack of unprotected entry points is commendable, but the identified taint flows warrant close attention.

In conclusion, the plugin has a good foundation with robust input validation and output escaping practices. The main concern lies with the two high-severity taint flows, which point to potential weaknesses in how user-supplied data is handled. Addressing these specific taint flows should be the priority to further harden the plugin's security. The lack of historical vulnerabilities is a strong positive, but it doesn't negate the current findings from the static analysis.

Key Concerns

  • High severity taint flows with unsanitized paths
  • External HTTP requests
Vulnerabilities
None known

Stella Smart FAQ – AI FAQ Generator & Schema Builder Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Stella Smart FAQ – AI FAQ Generator & Schema Builder Release Timeline

v1.0.0Current
Code Analysis
Analyzed Apr 16, 2026

Stella Smart FAQ – AI FAQ Generator & Schema Builder Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
5 prepared
Unescaped Output
1
622 escaped
Nonce Checks
13
Capability Checks
9
File Operations
0
External Requests
5
Bundled Libraries
0

SQL Query Safety

100% prepared5 total queries

Output Escaping

100% escaped623 total outputs
Data Flows · Security
2 unsanitized

Data Flow Analysis

2 flows2 with unsanitized paths
ajax_delete_unanswered_terms (includes/class-stella-smart-faq-admin.php:930)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Stella Smart FAQ – AI FAQ Generator & Schema Builder Attack Surface

Entry Points16
Unprotected0

AJAX Handlers 15

authwp_ajax_stella_generate_faqsincludes/class-stella-smart-faq-admin.php:28
authwp_ajax_stella_scan_opportunitiesincludes/class-stella-smart-faq-admin.php:29
authwp_ajax_stella_generate_from_termincludes/class-stella-smart-faq-admin.php:30
authwp_ajax_stella_faq_fetch_modelsincludes/class-stella-smart-faq-admin.php:31
authwp_ajax_stella_faq_test_connectionincludes/class-stella-smart-faq-admin.php:32
authwp_ajax_stella_faq_listincludes/class-stella-smart-faq-admin.php:33
authwp_ajax_stella_delete_unanswered_termsincludes/class-stella-smart-faq-admin.php:34
authwp_ajax_stella_faq_viewincludes/class-stella-smart-faq-frontend.php:27
noprivwp_ajax_stella_faq_viewincludes/class-stella-smart-faq-frontend.php:28
authwp_ajax_stella_faq_track_searchincludes/class-stella-smart-faq-frontend.php:29
noprivwp_ajax_stella_faq_track_searchincludes/class-stella-smart-faq-frontend.php:30
authwp_ajax_stella_faq_load_moreincludes/class-stella-smart-faq-frontend.php:31
noprivwp_ajax_stella_faq_load_moreincludes/class-stella-smart-faq-frontend.php:32
authwp_ajax_stella_faq_searchincludes/class-stella-smart-faq-search.php:17
noprivwp_ajax_stella_faq_searchincludes/class-stella-smart-faq-search.php:18

Shortcodes 1

[stella_faq] includes/class-stella-smart-faq-frontend.php:25
WordPress Hooks 15
actionadmin_menuincludes/class-stella-smart-faq-admin.php:23
actionadmin_initincludes/class-stella-smart-faq-admin.php:24
actionadmin_enqueue_scriptsincludes/class-stella-smart-faq-admin.php:25
actionadd_meta_boxesincludes/class-stella-smart-faq-admin.php:26
actionsave_postincludes/class-stella-smart-faq-admin.php:27
actionadmin_footerincludes/class-stella-smart-faq-admin.php:35
actionadmin_menuincludes/class-stella-smart-faq-admin.php:36
actionwp_enqueue_scriptsincludes/class-stella-smart-faq-frontend.php:24
actionwp_footerincludes/class-stella-smart-faq-frontend.php:26
actioninitincludes/class-stella-smart-faq-plugin.php:62
actioninitincludes/class-stella-smart-faq-post-type.php:17
actionadd_meta_boxesincludes/class-stella-smart-faq-post-type.php:18
actionsave_post_stella_faqincludes/class-stella-smart-faq-post-type.php:19
actionsave_post_stella_faqincludes/class-stella-smart-faq-post-type.php:121
actionplugins_loadedstella-smart-faq.php:34
Maintenance & Trust

Stella Smart FAQ – AI FAQ Generator & Schema Builder Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 13, 2026
PHP min version7.4
Downloads39

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Stella Smart FAQ – AI FAQ Generator & Schema Builder Developer Profile

mariastellatech

3 plugins · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Stella Smart FAQ – AI FAQ Generator & Schema Builder

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/stella-smart-faq-ai-faq-generator-schema-builder/assets/css/stella-smart-faq.css/wp-content/plugins/stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-admin.js/wp-content/plugins/stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-frontend.js
Script Paths
/wp-content/plugins/stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-admin.js/wp-content/plugins/stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-frontend.js
Version Parameters
stella-smart-faq-ai-faq-generator-schema-builder/style.css?ver=stella-smart-faq-ai-faq-generator-schema-builder/assets/css/stella-smart-faq.css?ver=stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-admin.js?ver=stella-smart-faq-ai-faq-generator-schema-builder/assets/js/stella-smart-faq-frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
stella-smart-faq-admin-pagestella-smart-faq-dashboard-wrapstella-smart-faq-settings-wrapstella-smart-faq-generator-meta-boxstella-smart-faq-prompt-field
HTML Comments
<!-- Stella Smart FAQ AI Generator Meta Box -->
Data Attributes
data-stella-faq-iddata-stella-faq-post-id
JS Globals
stellaSmartFAQAdminstellaSmartFAQFrontend
REST Endpoints
/wp-json/stella-smart-faq/v1/generate/wp-json/stella-smart-faq/v1/scan/wp-json/stella-smart-faq/v1/term-generate/wp-json/stella-smart-faq/v1/fetch-models/wp-json/stella-smart-faq/v1/test-connection/wp-json/stella-smart-faq/v1/faq-list/wp-json/stella-smart-faq/v1/delete-unanswered-terms
FAQ

Frequently Asked Questions about Stella Smart FAQ – AI FAQ Generator & Schema Builder