
WordClever – AI Content Writer Security & Risk Analysis
wordpress.org/plugins/wordclever-ai-content-writerWordClever AI Content Writer generates SEO-friendly product descriptions, meta titles, and more for WooCommerce with just a few clicks.
Is WordClever – AI Content Writer Safe to Use in 2026?
Generally Safe
Score 100/100WordClever – AI Content Writer has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin "wordclever-ai-content-writer" v1.0.8 exhibits a generally strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs, unpatched vulnerabilities, or critical/high severity issues in the vulnerability history is a significant positive indicator. Furthermore, the code analysis shows excellent practices, including 100% usage of prepared statements for SQL queries and 100% proper output escaping, which are crucial for preventing common web vulnerabilities. The presence of nonce checks on 7 out of 8 AJAX handlers is also a good sign, mitigating potential CSRF attacks.
However, there are a few areas that warrant attention. The most notable concern is the complete lack of capability checks on any of the 8 AJAX handlers. While nonce checks offer some protection, the absence of proper authorization checks means that any user, regardless of their role or permissions, could potentially trigger these AJAX actions. This could lead to unauthorized operations if the AJAX handlers perform sensitive actions. Additionally, the presence of one file operation and nine external HTTP requests, while not inherently vulnerable, increases the plugin's potential attack surface and the risk of introducing vulnerabilities if not handled with extreme care and proper validation of inputs and outputs.
In conclusion, the plugin demonstrates a solid foundation in secure coding practices, particularly concerning SQL and output handling. The lack of historical vulnerabilities is reassuring. The primary weakness lies in the missing capability checks for its AJAX endpoints, which represents the most significant security risk identified. Addressing this would further enhance the plugin's security.
Key Concerns
- AJAX handlers without capability checks
WordClever – AI Content Writer Security Vulnerabilities
WordClever – AI Content Writer Code Analysis
Output Escaping
Data Flow Analysis
WordClever – AI Content Writer Attack Surface
AJAX Handlers 8
WordPress Hooks 8
Maintenance & Trust
WordClever – AI Content Writer Maintenance & Trust
Maintenance Signals
Community Trust
WordClever – AI Content Writer Alternatives
SEOWriting
seowriting
AI writing assistant for creating SEO-optimized content with auto-publishing & scheduling posts on WordPress websites.
Outrank
outrank
Outrank automatically creates and publishes SEO-optimized articles to your WordPress site as blog posts or drafts.
XHTheme AI Toolbox
xhtheme-ai-toolbox
AI tag extraction, AI image, AI summary, comment generation, AI topic expansion, auto-classification, slug generation and AI content enhancement.
BrainyPress
brainypress
The Ultimate Fully Automated AI Blogger. Runs 24/7 on Auto-Pilot or Manual Mode. Generates Human-Like, SEO-Ranked Content for ANY Niche using Free Gem …
Easy Digital Downloads – Variable Pricing Descriptions
edd-variable-pricing-descriptions
Provide detailed descriptions to customers for your variations when using variable prices with Easy Digital Downloads.
WordClever – AI Content Writer Developer Profile
74 plugins · 14K total installs
How We Detect WordClever – AI Content Writer
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wordclever-ai-content-writer/assets/css/metabox.css/wp-content/plugins/wordclever-ai-content-writer/assets/js/metabox.js/wp-content/plugins/wordclever-ai-content-writer/assets/images/bundle-banner.png/wp-content/plugins/wordclever-ai-content-writer/assets/css/admin-upsell-banner.css/wp-content/plugins/wordclever-ai-content-writer/assets/js/metabox.jswordclever-ai-content-writer/assets/css/metabox.css?ver=wordclever-ai-content-writer/assets/js/metabox.js?ver=HTML / DOM Fingerprints
wordclever-upsell-bannerwordclever-banner-main-wrapwordclever-banner-imgwordclever-banner-contentwordclever-banner-btn-contentwordclever-disocunt-wrapwordclever-bundlle-btnwordclever-username+2 moreid="wordclever-username"id="wordclever-request-info"id="wordclever-banner-main"wordclever_ajax_object/wp-json/wordclever/v1/generate_content/wp-json/wordclever/v1/get_used_request/wp-json/wordclever/v1/verify_license/wp-json/wordclever/v1/auth/wp-json/wordclever/v1/support_tab_form/wp-json/wordclever/v1/reset_auth_pass