StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Security & Risk Analysis

wordpress.org/plugins/storehelper-kit-toolkit

All-in-one WooCommerce toolkit with AI llms.txt, ALT text, bulk pricing, and cleanup tools.

10 active installs v3.4.0 PHP 7.4+ WP 5.0+ Updated Mar 5, 2026
aiautomationbulk-editseowoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Safe to Use in 2026?

Generally Safe

Score 100/100

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 29d ago
Risk Assessment

The storehelper-kit-toolkit plugin v3.4.0 exhibits a generally positive security posture, with no known vulnerabilities (CVEs) recorded and a strong adherence to secure coding practices like nonce and capability checks. The majority of SQL queries use prepared statements, and a high percentage of output is properly escaped, indicating good development effort in preventing common web vulnerabilities.

However, there are areas for improvement. The presence of 18 AJAX handlers, with one notably lacking authentication checks, presents a significant attack surface. This unprotected entry point could potentially be exploited if it handles user-provided data without proper validation or authorization. Additionally, the taint analysis revealed flows with unsanitized paths, though they did not escalate to critical or high severity in this static analysis. These represent a potential risk if the plugin were to evolve or if these paths were to interact with more sensitive operations.

Overall, the plugin's lack of historical vulnerabilities is a strong positive indicator. Combined with the robust use of security features like prepared statements and output escaping, it suggests a development team that is generally security-conscious. The primary concern lies with the unprotected AJAX handler, which needs immediate attention. The identified unsanitized paths, while not critical, should also be reviewed and remediated to further harden the plugin.

Key Concerns

  • Unprotected AJAX handler found
  • Flows with unsanitized paths identified
Vulnerabilities
None known

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Code Analysis

Dangerous Functions
0
Raw SQL Queries
20
14 prepared
Unescaped Output
100
445 escaped
Nonce Checks
30
Capability Checks
27
File Operations
5
External Requests
9
Bundled Libraries
0

SQL Query Safety

41% prepared34 total queries

Output Escaping

82% escaped545 total outputs
Data Flows
6 unsanitized

Data Flow Analysis

16 flows6 with unsanitized paths
storehelper_kit_brand_image_auto_update_process (storehelper-kit.php:1107)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface
1 unprotected

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Attack Surface

Entry Points18
Unprotected1

AJAX Handlers 18

authwp_ajax_storehelper_kit_brand_image_update_processstorehelper-kit.php:858
authwp_ajax_storehelper_kit_brand_image_auto_update_processstorehelper-kit.php:1095
authwp_ajax_storehelper_kit_brand_image_auto_update_all_processstorehelper-kit.php:1100
authwp_ajax_storehelper_kit_price_tiers_updatestorehelper-kit.php:1552
authwp_ajax_storehelper_kit_validate_api_keystorehelper-kit.php:1646
authwp_ajax_storehelper_kit_alt_get_statusstorehelper-kit.php:2046
authwp_ajax_storehelper_kit_alt_force_runstorehelper-kit.php:2058
authwp_ajax_storehelper_kit_llms_regeneratestorehelper-kit.php:2130
authwp_ajax_storehelper_kit_seo_generatetools\ai-seo-tags.php:21
authwp_ajax_storehelper_kit_seo_dry_runtools\ai-seo-tags.php:22
authwp_ajax_storehelper_kit_seo_batchtools\ai-seo-tags.php:23
authwp_ajax_storehelper_kit_seo_get_productstools\ai-seo-tags.php:708
authwp_ajax_storehelper_kit_duplicates_scantools\duplicate-finder.php:20
authwp_ajax_storehelper_kit_duplicates_deletetools\duplicate-finder.php:21
authwp_ajax_storehelper_kit_duplicates_mergetools\duplicate-finder.php:22
authwp_ajax_storehelper_kit_alt_generate_singletools\image-alt-text-generator.php:150
authwp_ajax_storehelper_kit_orders_previewtools\order-cleaner.php:20
authwp_ajax_storehelper_kit_orders_deletetools\order-cleaner.php:21
WordPress Hooks 21
actionwp_dashboard_setupincludes\dashboard-widget.php:16
actionadmin_headincludes\dashboard-widget.php:164
actionrest_api_initincludes\rest-api.php:16
actionadmin_noticesstorehelper-kit.php:162
actionplugins_loadedstorehelper-kit.php:181
actioninitstorehelper-kit.php:184
filterquery_varsstorehelper-kit.php:192
actionadmin_menustorehelper-kit.php:235
actionadmin_enqueue_scriptsstorehelper-kit.php:1555
actionstorehelper_kit_alt_cron_workerstorehelper-kit.php:1883
actiontemplate_redirectstorehelper-kit.php:2077
filtercron_schedulesstorehelper-kit.php:2143
actionstorehelper_kit_llms_regenerate_eventstorehelper-kit.php:2151
actioninitstorehelper-kit.php:2170
actioninittools\ai-seo-tags.php:18
actioninittools\auto-cross-sells.php:18
actioninittools\duplicate-finder.php:17
actioninittools\order-cleaner.php:17
actioninittools\price-update.php:18
actioninittools\product-delete.php:18
actioninittools\unused-media-cleaner.php:18

Scheduled Events 3

storehelper_kit_alt_cron_worker
storehelper_kit_alt_cron_worker
storehelper_kit_llms_regenerate_event
Maintenance & Trust

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMar 5, 2026
PHP min version7.4
Downloads560

Community Trust

Rating0/100
Number of ratings0
Active installs10
Developer Profile

StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup) Developer Profile

BuyReadySite.com

3 plugins · 50 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/storehelper-kit-toolkit/assets/css/admin.css/wp-content/plugins/storehelper-kit-toolkit/assets/css/frontend.css/wp-content/plugins/storehelper-kit-toolkit/assets/js/admin.js/wp-content/plugins/storehelper-kit-toolkit/assets/js/frontend.js
Script Paths
/wp-content/plugins/storehelper-kit-toolkit/assets/js/admin.js/wp-content/plugins/storehelper-kit-toolkit/assets/js/frontend.js
Version Parameters
storehelper-kit-toolkit/assets/css/admin.css?ver=storehelper-kit-toolkit/assets/css/frontend.css?ver=storehelper-kit-toolkit/assets/js/admin.js?ver=storehelper-kit-toolkit/assets/js/frontend.js?ver=

HTML / DOM Fingerprints

CSS Classes
storehelper-kit-contentstorehelper-kit-input-wrapstorehelper-kit-main-contentstorehelper-kit-tool-sectionstorehelper-kit-wizard
HTML Comments
StoreHelper Kit Admin ScriptsStoreHelper Kit Frontend Scripts
Data Attributes
data-storehelper-kit-iddata-storehelper-kit-type
JS Globals
storehelperKitAdminstorehelperKitFrontend
REST Endpoints
/wp-json/storehelper-kit/v1/tools
Shortcode Output
[storehelper_kit_dashboard]
FAQ

Frequently Asked Questions about StoreHelper Kit – AI & SEO WooCommerce Toolkit (llms.txt, ALT text, bulk pricing, cleanup)