Swayam AI Chatbot Security & Risk Analysis

wordpress.org/plugins/swayam-ai-chatbot

AI-powered chatbot using RAG (Retrieval-Augmented Generation) to answer questions based on your WordPress content.

0 active installs v1.0.0 PHP 8.2+ WP 6.0+ Updated Unknown
aichatbotelasticsearchllmrag
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Swayam AI Chatbot Safe to Use in 2026?

Generally Safe

Score 100/100

Swayam AI Chatbot has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs
Risk Assessment

The swayam-ai-chatbot plugin v1.0.0 exhibits a generally good security posture with several strengths. The complete absence of any known vulnerabilities or CVEs, coupled with the fact that all SQL queries utilize prepared statements and a high percentage of output is properly escaped, are positive indicators. Furthermore, the plugin does not engage in file operations or include potentially problematic bundled libraries. However, there are significant areas of concern that detract from its overall security. The presence of two AJAX handlers without authentication checks creates a notable attack surface that could be exploited by unauthenticated users. While the taint analysis shows no critical or high-severity issues currently, the lack of analysis for total flows makes it difficult to fully assess this aspect. The plugin does implement nonce checks and capability checks on some entry points, which is a good practice, but this is overshadowed by the unprotected AJAX endpoints.

Key Concerns

  • AJAX handlers without auth checks
  • Taint analysis not fully comprehensive
Vulnerabilities
None known

Swayam AI Chatbot Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Swayam AI Chatbot Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
5
55 escaped
Nonce Checks
2
Capability Checks
3
File Operations
0
External Requests
1
Bundled Libraries
0

Output Escaping

92% escaped60 total outputs
Attack Surface
2 unprotected

Swayam AI Chatbot Attack Surface

Entry Points3
Unprotected2

AJAX Handlers 2

authwp_ajax_swayam_ai_chatbot_sync_allsrc\Loader.php:62
authwp_ajax_swayam_ai_chatbot_test_connectionsrc\Loader.php:63

Shortcodes 1

[swayam_ai_chatbot] src\Loader.php:69
WordPress Hooks 13
actionswayam_ai_chatbot_sync_single_postsrc\Embedding\SyncManager.php:250
actionadmin_menusrc\Loader.php:51
actionadmin_initsrc\Loader.php:52
actionadmin_enqueue_scriptssrc\Loader.php:53
actionsave_postsrc\Loader.php:57
actiondelete_postsrc\Loader.php:58
actiontransition_post_statussrc\Loader.php:59
actionrest_api_initsrc\Loader.php:66
actionwp_enqueue_scriptssrc\Loader.php:70
actionwp_enqueue_scriptssrc\Loader.php:75
actionwp_footersrc\Loader.php:76
actionplugins_loadedswayam-ai-chatbot.php:29
actionadmin_noticesswayam-ai-chatbot.php:31

Scheduled Events 2

swayam_ai_chatbot_sync_single_post
swayam_ai_chatbot_sync_single_post
Maintenance & Trust

Swayam AI Chatbot Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedUnknown
PHP min version8.2
Downloads134

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Swayam AI Chatbot Developer Profile

Sagar Deshmukh

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Swayam AI Chatbot

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/swayam-ai-chatbot/assets/css/admin.css/wp-content/plugins/swayam-ai-chatbot/assets/js/admin.js
Script Paths
/wp-content/plugins/swayam-ai-chatbot/assets/js/admin.js
Version Parameters
swayam-ai-chatbot/assets/css/admin.css?ver=swayam-ai-chatbot/assets/js/admin.js?ver=

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about Swayam AI Chatbot