Coauthor – AI Writing Assistant and Artist Security & Risk Analysis

wordpress.org/plugins/writers-block-block

Coauthor helps you write with GPT-3 and illustrate your posts with DALL-e. You will need an OpenAI token to use this block.

10 active installs v0.3.5 PHP 7.0.0+ WP 5.3.1+ Updated Dec 9, 2022
aiblockdallegpt3openai
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Coauthor – AI Writing Assistant and Artist Safe to Use in 2026?

Generally Safe

Score 85/100

Coauthor – AI Writing Assistant and Artist has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 3yr ago
Risk Assessment

The 'writers-block-block' plugin v0.3.5 exhibits a strong security posture based on the provided static analysis. There are no identified vulnerabilities in its past history, and the static analysis reveals a clean codebase with no dangerous functions, direct SQL queries, or file operations. All identified outputs are properly escaped, and all SQL queries utilize prepared statements, which are excellent security practices. The plugin also has a capability check implemented, further enhancing its security.

However, the analysis does highlight a few areas that, while not critical in this specific version, warrant attention for future development. The presence of two external HTTP requests without clear context raises a potential concern, as these could become a vector for issues if not handled securely. More significantly, the complete absence of nonce checks and AJAX handlers, while resulting in a zero attack surface in this report, could indicate a lack of robust protection mechanisms for potential future functionalities that might be added. The zero taint flows are a positive sign, but the limited scope of analysis might not capture all potential issues.

In conclusion, 'writers-block-block' v0.3.5 is currently a very secure plugin with no known vulnerabilities or immediate critical risks identified in the static analysis. Its adherence to secure coding practices for SQL and output handling is commendable. The primary areas for consideration are the secure handling of external HTTP requests and potentially implementing more comprehensive security checks like nonces if the plugin's functionality expands to include user-interactive features.

Key Concerns

  • External HTTP requests present
  • No nonce checks detected
Vulnerabilities
None known

Coauthor – AI Writing Assistant and Artist Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Coauthor – AI Writing Assistant and Artist Release Timeline

v0.3.5Current
v0.3.2
v0.3.1
v0.1.1
v0.1.0
Code Analysis
Analyzed Apr 16, 2026

Coauthor – AI Writing Assistant and Artist Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
0
2 escaped
Nonce Checks
0
Capability Checks
1
File Operations
0
External Requests
2
Bundled Libraries
0

Output Escaping

100% escaped2 total outputs
Attack Surface

Coauthor – AI Writing Assistant and Artist Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 4
actionrest_api_initclass.openai-rest-controller.php:11
actionadmin_menuclass.settings.php:11
actionadmin_initclass.settings.php:12
actioninitcoauthor.php:69
Maintenance & Trust

Coauthor – AI Writing Assistant and Artist Maintenance & Trust

Maintenance Signals

WordPress version tested6.1.10
Last updatedDec 9, 2022
PHP min version7.0.0
Downloads4K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Coauthor – AI Writing Assistant and Artist Developer Profile

Artur Piszek

6 plugins · 60 total installs

84
trust score
Avg Security Score
85/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Coauthor – AI Writing Assistant and Artist

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/writers-block-block/build/index.css/wp-content/plugins/writers-block-block/build/index.js/wp-content/plugins/writers-block-block/build/style-index.css
Script Paths
/wp-content/plugins/writers-block-block/build/index.js
Version Parameters
/wp-content/plugins/writers-block-block/build/index.css?ver=/wp-content/plugins/writers-block-block/build/index.js?ver=/wp-content/plugins/writers-block-block/build/style-index.css?ver=

HTML / DOM Fingerprints

CSS Classes
coauthor-editor-wrapper
Data Attributes
data-blockdata-block-type
REST Endpoints
/wp/v2/openai/completions/wp/v2/openai/images/generations
FAQ

Frequently Asked Questions about Coauthor – AI Writing Assistant and Artist