Uttik FAQ Widget + Schema : AI Answer Engine Security & Risk Analysis

wordpress.org/plugins/uttik-answer-engine

AI-powered FAQs, structured answers, and schema automation to reduce support load and improve search visibility.

0 active installs v2.0.2 PHP 7.2+ WP 5.0+ Updated Dec 22, 2025
faqschemaseosupportwidget
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Uttik FAQ Widget + Schema : AI Answer Engine Safe to Use in 2026?

Generally Safe

Score 100/100

Uttik FAQ Widget + Schema : AI Answer Engine has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The 'uttik-answer-engine' v2.0.2 plugin exhibits a generally strong security posture based on the provided static analysis. A significant strength is the absence of any identified critical or high-severity vulnerabilities in its history and a robust implementation of security checks, including nonce and capability checks on all entry points. The plugin also demonstrates excellent output escaping practices, with 97% of outputs properly sanitized, minimizing the risk of cross-site scripting (XSS) vulnerabilities. The lack of dangerous functions and taint analysis findings further contribute to this positive assessment.

However, a notable concern arises from the presence of a single SQL query that does not utilize prepared statements. While this is a single instance, raw SQL queries are inherently risky as they can be susceptible to SQL injection if not handled with extreme care, especially if dynamic data is ever introduced. The plugin also performs external HTTP requests, which could be a vector for SSRF (Server-Side Request Forgery) if not properly validated, although the analysis doesn't indicate any specific issues in this regard. The vulnerability history being clean is a very positive sign, suggesting a conscientious development team that addresses issues promptly, or that the plugin has not been a target. Overall, the plugin is well-secured but requires attention to the single raw SQL query to achieve a perfect score.

Key Concerns

  • SQL queries without prepared statements
Vulnerabilities
None known

Uttik FAQ Widget + Schema : AI Answer Engine Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Uttik FAQ Widget + Schema : AI Answer Engine Release Timeline

No version history available.
Code Analysis
Analyzed Mar 17, 2026

Uttik FAQ Widget + Schema : AI Answer Engine Code Analysis

Dangerous Functions
0
Raw SQL Queries
1
0 prepared
Unescaped Output
5
162 escaped
Nonce Checks
5
Capability Checks
3
File Operations
1
External Requests
6
Bundled Libraries
0

SQL Query Safety

0% prepared1 total queries

Output Escaping

97% escaped167 total outputs
Attack Surface

Uttik FAQ Widget + Schema : AI Answer Engine Attack Surface

Entry Points7
Unprotected0

AJAX Handlers 5

authwp_ajax_uttik_submit_supportuttik-answer-engine.php:114
noprivwp_ajax_uttik_submit_supportuttik-answer-engine.php:115
authwp_ajax_uttik_clear_cacheuttik-answer-engine.php:116
authwp_ajax_uttik_get_organization_datauttik-answer-engine.php:117
authwp_ajax_uttik_update_organization_datauttik-answer-engine.php:118

Shortcodes 2

[uttik_faq_widget] uttik-answer-engine.php:110
[uttik_faq_button] uttik-answer-engine.php:111
WordPress Hooks 33
actionuttik_generate_faq_sitemapincludes\class-uttik-faq-sitemap.php:28
actioninitincludes\class-uttik-faq-sitemap.php:31
actioninitincludes\class-uttik-faq-sitemap.php:34
actiontemplate_redirectincludes\class-uttik-faq-sitemap.php:35
filterrobots_txtincludes\class-uttik-faq-sitemap.php:38
filterwpseo_sitemap_indexincludes\class-uttik-faq-sitemap.php:42
filterrank_math/sitemap/indexincludes\class-uttik-faq-sitemap.php:47
actionadmin_initincludes\class-uttik-faq-sitemap.php:51
actionadmin_initincludes\class-uttik-faq-sitemap.php:54
actionadmin_noticesincludes\class-uttik-faq-sitemap.php:64
filterquery_varsincludes\class-uttik-faq-sitemap.php:231
actionplugins_loadeduttik-answer-engine.php:37
filterbody_classuttik-answer-engine.php:90
actionget_footeruttik-answer-engine.php:94
actioninituttik-answer-engine.php:97
actionadmin_inituttik-answer-engine.php:98
actionadmin_menuuttik-answer-engine.php:99
actionupdate_option_uttik_faq_slug_baseuttik-answer-engine.php:102
actionwp_enqueue_scriptsuttik-answer-engine.php:105
actionadmin_enqueue_scriptsuttik-answer-engine.php:106
actionwp_enqueue_scriptsuttik-answer-engine.php:107
actionwp_enqueue_scriptsuttik-answer-engine.php:121
filterquery_varsuttik-answer-engine.php:135
actiontemplate_includeuttik-answer-engine.php:136
actionwp_headuttik-answer-engine.php:137
actionwp_enqueue_scriptsuttik-answer-engine.php:140
actionadmin_inituttik-answer-engine.php:153
actionwp_footeruttik-answer-engine.php:158
filterthe_contentuttik-answer-engine.php:260
filterthe_titleuttik-answer-engine.php:261
filterdocument_title_partsuttik-answer-engine.php:262
actionwp_footeruttik-answer-engine.php:634
actionplugins_loadeduttik-answer-engine.php:2148

Scheduled Events 1

uttik_generate_faq_sitemap
Maintenance & Trust

Uttik FAQ Widget + Schema : AI Answer Engine Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedDec 22, 2025
PHP min version7.2
Downloads144

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Uttik FAQ Widget + Schema : AI Answer Engine Developer Profile

honeytech

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Uttik FAQ Widget + Schema : AI Answer Engine

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/uttik-answer-engine/assets/css/uttik-faq-widget.css/wp-content/plugins/uttik-answer-engine/assets/js/uttik-faq-widget.js/wp-content/plugins/uttik-answer-engine/assets/js/uttik-faq-admin.js
Script Paths
/wp-content/plugins/uttik-answer-engine/assets/js/uttik-faq-widget.js/wp-content/plugins/uttik-answer-engine/assets/js/uttik-faq-admin.js
Version Parameters
uttik-answer-engine/assets/css/uttik-faq-widget.css?ver=uttik-answer-engine/assets/js/uttik-faq-widget.js?ver=uttik-answer-engine/assets/js/uttik-faq-admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
uttik-faq-widget-containeruttik-faq-search-inpututtik-faq-answer-itemuttik-faq-buttonuttik-faq-modal-contentuttik-faq-section-titleuttik-faq-settings-sectionuttik-faq-org-id-input+3 more
HTML Comments
<!-- Start Uttik AI Answer Engine Widget --><!-- End Uttik AI Answer Engine Widget --><!-- Uttik FAQ Widget Shortcode --><!-- Uttik FAQ Button Shortcode -->+15 more
Data Attributes
data-uttik-org-iddata-uttik-api-base-urldata-uttik-faq-slugdata-uttik-use-text-slugsdata-uttik-faq-index-urldata-uttik-nonce+5 more
JS Globals
uttikFaqData
Shortcode Output
[uttik_faq_widget][uttik_faq_button]
FAQ

Frequently Asked Questions about Uttik FAQ Widget + Schema : AI Answer Engine