WordPress plugin profile

WinaltChat for WooCommerce

WinaltChat – AI chatbot and live human chat for WooCommerce. Find products, answer questions, connect customers to your support team.

Version1.23.6
Active installsNew
Rating5.0 / 5
Tested toWP 7.1

About this plugin

WinaltChat adds a fast, intelligent chat widget to your WooCommerce store. Customers can search your product catalogue, get instant answers about shipping and returns, and — when they need a real person — connect to your support team through a built-in live chat system, all without leaving your store. AI Shopping Assistant Dual AI Modes — Use your own API key from Groq — LLaMA (Free Tier), ChatGPT (OpenAI), Claude (Anthropic), or Gemini (Google) for full conversational AI. No key? The built-in Basic AI mode runs entirely on your server with zero external calls and zero ongoing cost. Smart Product Search — Intent-aware search across your WooCommerce catalogue. Handles typos, synonyms, multilingual and mixed-language queries, and follow-up questions naturally. Product Comparisons — Customers can ask “which is better, the Sony or the Samsung?” and get a clear side-by-side comparison with prices and key specs from your own catalogue. Store Knowledge Base — Reads your shipping, returns, contact, and about pages to answer policy questions accurately and dynamically — no hardcoded answers that break for other stores. Conversation Context — Remembers context within a session so follow-up questions (“does it come in blue?”) work naturally. Amazon Affiliate Fallback — When a product is out of stock, optionally suggest an Amazon affiliate link so you still earn a commission. Live Human Chat Human Handoff — When a customer types phrases like “I want to talk to a human”, “customer service”, “live agent”, or dozens of natural variants, the plugin detects the request and connects them to a real person on your team. Admin Live Chats Dashboard — A dedicated Live Chats screen in your WordPress admin shows all active, waiting, and closed conversations in a two-panel interface. Every handoff request is queued here as soon as it happens — keep the tab open to also show as instantly online to visitors and connect in real time. Visitor Name Prompt — Before connecting, the visitor is optionally asked for their name. If skipped, they are identified as “Visitor #ID” so you can tell conversations apart. Full Conversation Context for Agents — When a customer is handed off, the admin sees the complete prior AI conversation so there is no need to ask “how can I help?” twice. Visitor Presence Dot — A green dot shows the visitor is active. It turns grey within 30 seconds if they close the tab. Two-Tier Timeout — If your team does not respond within 90 seconds, the visitor sees a friendly patience message. After 5 minutes of no reply, the chat gracefully falls back to the AI assistant with an optional email capture. Intelligent Offline Handling — When no admin is online the AI keeps helping, and the handoff request is still queued in the background so it’s waiting in your Live Chats list whenever you next check — no need to have caught it live. Visitors can also optionally leave their email for a follow-up; leads appear with a dedicated Leads section and unread badge. Session Management — Close chats when resolved, or delete them permanently. Closed and lead sessions stay visible in their own sections until manually removed. Zero External Dependencies — Live chat runs entirely within your WordPress site using secure AJAX polling over the REST API. No Pusher, no third-party service, no extra cost. Email Notifications — Get an email when a customer starts a live chat or leaves their contact details while you are offline. Privacy & Security All live chat data is stored in your own WordPress database. Nothing is sent to an external service. Session tokens are 32-character cryptographically random strings — not sequential IDs — so sessions cannot be enumerated. All endpoints enforce nonces, capability checks, input sanitization, output escaping, and rate limiting. Message content is sanitized server-side, and rich chat HTML (product cards, links, images) is additionally sanitized client-side via a bundled copy of DOMPurify before being rendered — see “Bundled Libraries” below. Bundled Libraries DOMPurify 3.1.6 — client-side HTML sanitizer, used to safely render rich chat content (product cards, links, images). Vendored locally at assets/js/vendor/purify.min.js ; not loaded from a CDN. © Cure53 and other contributors. Dual-licensed under the Apache License 2.0 and Mozilla Public License 2.0, both GPL-compatible. github.com/cure53/DOMPurify Requirements WordPress 6.2 or later WooCommerce 7.0 or later (must be installed and active) PHP 7.4 or later An API key from Groq, OpenAI, Anthropic, or Google (optional — Basic AI and Live Chat both work without one) Support Support Forum: wordpress.org/support/plugin/winaltchat-for-woocommerce Email: [email protected] We aim to respond to all support requests within 48 hours. External Services This plugin connects to third-party AI providers only when you configure an external AI mode and enter your own API key. In Basic AI mode and during live human chat, no external AI service is used. AI Providers (optional — only when an API key is configured) Customer messages, recent conversation context, and relevant store and product context are sent to the AI provider you select so it can generate a response. No data is sent to these providers when using Basic AI mode. Groq — groq.com | Privacy Policy | Terms of Service OpenAI — openai.com | Privacy Policy | Terms of Use Anthropic Claude — anthropic.com | Privacy Policy | Terms of Service Google Gemini — ai.google.dev | Privacy Policy | Terms of Service Amazon Associate Program (optional — only when a tag is configured) When the Amazon fallback is enabled and no matching product is found in your store, the plugin generates an Amazon search link with your Associate tag. No customer data is transmitted to Amazon by the plugin — the link simply directs the visitor’s browser. Amazon — amazon.com | Privacy Notice Deactivation Feedback (sent on deactivation — full survey response, or a bare anonymous count if skipped) When you deactivate this plugin, an optional short survey asks why. If you respond, your site URL, the plugin/WordPress/PHP version, and whatever you entered in the survey are sent to Winalt Technologies to help improve the plugin. If you skip the survey instead, a bare deactivation count (just the plugin version — no site URL, WordPress version, or PHP version) is still sent so skipped deactivations aren’t invisible in aggregate. No personal data is collected beyond this unless you choose to type it into the free-text field yourself. Winalt Technologies — aisalesmanchatpro.com | Privacy Policy Anonymous Usage Tracking (optional — off by default, only sent if you click “Allow”) On first use, a notice asks permission to send anonymous “still active” pings to help us understand real-world installs. Nothing is sent unless you click “Allow” — you can also decline, or change your choice later from the plugin’s General Settings tab. When enabled, your site URL and the plugin/WordPress/PHP version are sent to Winalt Technologies once immediately and then roughly once a day for as long as it stays enabled. No personal or customer data is ever included. Winalt Technologies — aisalesmanchatpro.com | Privacy Policy