WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Security & Risk Analysis

wordpress.org/plugins/webplanet-ai-content-gen

Create high-quality SEO content with AI. The ultimate AI writer for manual blog posts, smart previews, and auto-categories using Google Gemini.

30 active installs v1.4.9 PHP 7.4+ WP 5.8+ Updated Jan 30, 2026
ai-writerblog-postcontent-generatorgoogle-geminiseo-writer
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Safe to Use in 2026?

Generally Safe

Score 100/100

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 2mo ago
Risk Assessment

The webplanet-ai-content-gen plugin version 1.4.9 exhibits a mixed security posture. On the positive side, the static analysis reveals a small attack surface, with all identified entry points (AJAX handlers) protected by nonce checks. There are no publicly disclosed vulnerabilities (CVEs) associated with this plugin, and importantly, no taint analysis findings indicate critical or high severity issues, nor are there any file operations or dangerous functions present.

However, there are notable areas of concern. The most significant is the complete absence of capability checks for its AJAX handlers. This means that any authenticated user, regardless of their role or permissions, can trigger these AJAX actions, potentially leading to unintended consequences or privilege escalation if these actions have sensitive side effects. Furthermore, the plugin uses raw SQL queries without prepared statements, which is a common vector for SQL injection vulnerabilities, especially when dealing with user-supplied input, even if not explicitly highlighted by the taint analysis in this specific version. The imperfect output escaping (40% not properly escaped) also presents a risk of Cross-Site Scripting (XSS) vulnerabilities if dynamic data is outputted without proper sanitization.

Given the lack of historical vulnerabilities, it suggests the developers may be diligent in addressing security issues. However, the presence of critical security anti-patterns like the lack of capability checks and raw SQL queries, coupled with imperfect output escaping, indicates a potential for vulnerabilities. The current security posture is therefore considered moderate, with significant risks that need to be addressed.

Key Concerns

  • AJAX handlers without capability checks
  • SQL queries not using prepared statements
  • Improper output escaping
Vulnerabilities
None known

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Code Analysis

Dangerous Functions
0
Raw SQL Queries
2
0 prepared
Unescaped Output
12
18 escaped
Nonce Checks
2
Capability Checks
0
File Operations
0
External Requests
2
Bundled Libraries
0

SQL Query Safety

0% prepared2 total queries

Output Escaping

60% escaped30 total outputs
Attack Surface

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_webplanet_acg_previewincludes\class-webplanet-acg-lite-core.php:19
authwp_ajax_webplanet_acg_saveincludes\class-webplanet-acg-lite-core.php:20
WordPress Hooks 5
actionadmin_menuincludes\class-webplanet-acg-lite-core.php:16
actionadmin_initincludes\class-webplanet-acg-lite-core.php:17
actionadmin_enqueue_scriptsincludes\class-webplanet-acg-lite-core.php:22
actionadmin_noticeswebplanet-ai-content-gen.php:21
actionplugins_loadedwebplanet-ai-content-gen.php:52
Maintenance & Trust

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedJan 30, 2026
PHP min version7.4
Downloads296

Community Trust

Rating100/100
Number of ratings1
Active installs30
Developer Profile

WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator Developer Profile

webplanetsoft

3 plugins · 60 total installs

87
trust score
Avg Security Score
90/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

HTML / DOM Fingerprints

FAQ

Frequently Asked Questions about WebPlanetSoft AI Content Gen – Google Gemini AI Writer, SEO Blog Post & Content Generator