Visionati Security & Risk Analysis

wordpress.org/plugins/visionati

AI-powered alt text, captions, and product descriptions. Choose from leading AI models.

10 active installs v1.0.2 PHP 7.4+ WP 6.0+ Updated Mar 3, 2026
accessibilityaialt-textproduct-descriptionswoocommerce
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Visionati Safe to Use in 2026?

Generally Safe

Score 100/100

Visionati has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The "visionati" v1.0.2 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of any known CVEs and a clean vulnerability history suggest a commitment to security by the developers or a lack of discovered vulnerabilities. The code analysis also shows positive signs, with a high percentage of SQL queries using prepared statements and a similarly high rate of properly escaped output. The presence of nonce and capability checks on all identified entry points is a significant strength, mitigating common attack vectors targeting AJAX actions.

However, the plugin does have a notable attack surface comprised of 10 AJAX handlers, even though none are reported as unprotected. While the static analysis indicates all have auth checks, a thorough manual review would be crucial to ensure these checks are robust and correctly implemented, as misconfigurations can still lead to vulnerabilities. The presence of file operations and external HTTP requests, while not inherently risky, are areas that require careful scrutiny in a deeper audit to ensure they do not introduce vulnerabilities like arbitrary file writes or insecure external data fetching.

In conclusion, the "visionati" plugin appears to be built with good security practices in mind, particularly regarding input sanitization and authentication. The lack of historical vulnerabilities further bolsters this impression. The primary area for caution lies in the implementation and robustness of the existing authentication and authorization checks for its AJAX handlers, and a detailed audit of file operations and external requests would be prudent. Overall, the plugin presents a low risk profile based on this data.

Vulnerabilities
None known

Visionati Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Visionati Release Timeline

v1.0.2Current
Code Analysis
Analyzed Mar 17, 2026

Visionati Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
16 prepared
Unescaped Output
8
85 escaped
Nonce Checks
10
Capability Checks
15
File Operations
1
External Requests
4
Bundled Libraries
0

SQL Query Safety

89% prepared18 total queries

Output Escaping

91% escaped93 total outputs
Attack Surface

Visionati Attack Surface

Entry Points10
Unprotected0

AJAX Handlers 10

authwp_ajax_visionati_verify_keyincludes\class-visionati-admin.php:31
authwp_ajax_visionati_analyzeincludes\class-visionati-media.php:23
authwp_ajax_visionati_apply_fieldincludes\class-visionati-media.php:24
authwp_ajax_visionati_bulk_analyzeincludes\class-visionati-media.php:25
authwp_ajax_visionati_get_imagesincludes\class-visionati-media.php:26
authwp_ajax_visionati_woo_generateincludes\class-visionati-woo.php:55
authwp_ajax_visionati_woo_applyincludes\class-visionati-woo.php:56
authwp_ajax_visionati_woo_bulk_generateincludes\class-visionati-woo.php:57
authwp_ajax_visionati_woo_get_productsincludes\class-visionati-woo.php:58
authwp_ajax_visionati_woo_get_statsincludes\class-visionati-woo.php:59
WordPress Hooks 18
actionadmin_menuincludes\class-visionati-admin.php:28
actionadmin_initincludes\class-visionati-admin.php:29
actionadmin_enqueue_scriptsincludes\class-visionati-admin.php:30
filterattachment_fields_to_editincludes\class-visionati-media.php:22
actionadd_attachmentincludes\class-visionati-media.php:27
actionadmin_menuincludes\class-visionati-media.php:28
filterbulk_actions-uploadincludes\class-visionati-media.php:29
filterhandle_bulk_actions-uploadincludes\class-visionati-media.php:30
actionadmin_noticesincludes\class-visionati-media.php:31
actionadmin_noticesincludes\class-visionati-media.php:32
actionadd_meta_boxesincludes\class-visionati-woo.php:53
actionadmin_menuincludes\class-visionati-woo.php:54
filterbulk_actions-edit-productincludes\class-visionati-woo.php:60
filterhandle_bulk_actions-edit-productincludes\class-visionati-woo.php:61
actionadmin_noticesincludes\class-visionati-woo.php:62
actionplugins_loadedvisionati.php:41
actioninitvisionati.php:52
actionadmin_noticesvisionati.php:96
Maintenance & Trust

Visionati Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedMar 3, 2026
PHP min version7.4
Downloads208

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Visionati Developer Profile

Visionati

1 plugin · 10 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Visionati

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/visionati/assets/css/visionati-admin.css/wp-content/plugins/visionati/assets/js/visionati-admin.js/wp-content/plugins/visionati/assets/js/visionati-media.js
Script Paths
/wp-content/plugins/visionati/assets/js/visionati-admin.js/wp-content/plugins/visionati/assets/js/visionati-media.js
Version Parameters
visionati/assets/css/visionati-admin.css?ver=visionati/assets/js/visionati-admin.js?ver=visionati/assets/js/visionati-media.js?ver=

HTML / DOM Fingerprints

CSS Classes
visionati-api-key-statusvisionati-api-key-status--validvisionati-api-key-status--invalidvisionati-spinner
Data Attributes
data-visionati-role
JS Globals
VisionatiAdmin
FAQ

Frequently Asked Questions about Visionati