[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fjBF_lm3oHUl0nKW4VpZWJZ_WeW4Uu9zH2QQvZRztdRA":3},{"slug":4,"display_name":4,"profile_url":5,"plugin_count":6,"total_installs":7,"avg_security_score":8,"avg_patch_time_days":9,"trust_score":10,"computed_at":11,"plugins":12},"nextdoorentertainment","https:\u002F\u002Fprofiles.wordpress.org\u002Fnextdoorentertainment\u002F",2,0,100,30,94,"2026-08-29T03:11:50.837Z",[13,34],{"slug":14,"name":15,"version":16,"author":4,"author_profile":5,"description":17,"short_description":18,"active_installs":7,"downloaded":19,"rating":7,"num_ratings":7,"last_updated":20,"tested_up_to":21,"requires_at_least":22,"requires_php":23,"tags":24,"homepage":30,"download_link":31,"security_score":8,"vuln_count":7,"unpatched_count":7,"last_vuln_date":32,"fetched_at":33},"cookie-consent-ve","Vlad Enterprises Cookie Consent","1.2.1","\u003Cp>Vlad Enterprises Cookie Consent is a lightweight, GDPR-minded cookie consent solution. It shows a consent banner on the first visit, gates analytics and marketing scripts until the visitor opts in, and automatically clears tracking cookies when consent is withdrawn.\u003C\u002Fp>\n\u003Cp>Scripts are blocked \u003Cem>before\u003C\u002Fem> they run (not just hidden), so no analytics or marketing code executes without consent. A preferences modal lets visitors toggle categories at any time, and a shortcode or JavaScript API lets them reopen it later.\u003C\u002Fp>\n\u003Ch4>Key features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Consent banner shown automatically on first visit.\u003C\u002Fli>\n\u003Cli>Preferences modal with per-category toggles (Necessary, Analytics, Marketing).\u003C\u002Fli>\n\u003Cli>Script gating by consent: mark scripts with \u003Ccode>type=\"text\u002Fplain\"\u003C\u002Fcode> and \u003Ccode>data-category\u003C\u002Fcode> and they only run once allowed.\u003C\u002Fli>\n\u003Cli>Auto-clear of common analytics\u002Fmarketing cookies (\u003Ccode>_ga\u003C\u002Fcode>, \u003Ccode>_gid\u003C\u002Fcode>, \u003Ccode>_gcl_au\u003C\u002Fcode>, \u003Ccode>_fbp\u003C\u002Fcode>, \u003Ccode>fr\u003C\u002Fcode>, \u003Ccode>hubspotutk\u003C\u002Fcode>, and more) when a category is declined.\u003C\u002Fli>\n\u003Cli>Customizable banner position (5 positions), light\u002Fdark theme, cookie name and expiry.\u003C\u002Fli>\n\u003Cli>\u003Ccode>[ccve_settings]\u003C\u002Fcode> shortcode to drop a “Cookie Settings” link anywhere.\u003C\u002Fli>\n\u003Cli>JavaScript API: \u003Ccode>CookieConsent.show()\u003C\u002Fcode>, \u003Ccode>.showPreferences()\u003C\u002Fcode>, \u003Ccode>.acceptAll()\u003C\u002Fcode>, \u003Ccode>.rejectAll()\u003C\u002Fcode>, \u003Ccode>.getPreferences()\u003C\u002Fcode>, \u003Ccode>.reset()\u003C\u002Fcode>.\u003C\u002Fli>\n\u003Cli>Block and widget for the settings link.\u003C\u002Fli>\n\u003Cli>Built-in English and Romanian text, fully editable.\u003C\u002Fli>\n\u003Cli>Responsive design; runs early on \u003Ccode>wp_head\u003C\u002Fcode> so gating applies before third-party code loads.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This plugin helps you collect and respect consent. It does not, by itself, make your site legally compliant — you are responsible for your cookie policy and for categorizing your own scripts correctly.\u003C\u002Fp>\n\u003Ch3>External services\u003C\u002Fh3>\n\u003Cp>This plugin does not connect to, or send any data to, any external service. It runs entirely on your own site.\u003C\u002Fp>\n\u003Cp>Cookie and tag detection is performed locally in the visitor’s browser by inspecting the cookies and \u003Ccode>\u003Cscript>\u003C\u002Fcode> tags already present on the page. Service names such as \u003Ccode>googletagmanager.com\u003C\u002Fcode> or \u003Ccode>connect.facebook.net\u003C\u002Fcode> appear in the plugin only as text patterns used to recognise tags that your own site has added — the plugin itself never makes requests to those domains.\u003C\u002Fp>\n","GDPR cookie consent with script gating, category-based blocking, a preferences modal, and auto-clearing of analytics and marketing cookies.",72,"2026-07-08T08:31:00.000Z","7.0.2","5.0","7.0",[25,26,27,28,29],"consent","cookie-banner","cookie-consent","gdpr","privacy","https:\u002F\u002Fgithub.com\u002Fspiri439\u002Fcookie-consent-ve","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fcookie-consent-ve.1.2.1.zip",null,"2026-07-22T17:31:50.256Z",{"slug":35,"name":36,"version":37,"author":4,"author_profile":5,"description":38,"short_description":39,"active_installs":7,"downloaded":40,"rating":7,"num_ratings":7,"last_updated":41,"tested_up_to":21,"requires_at_least":22,"requires_php":23,"tags":42,"homepage":48,"download_link":49,"security_score":8,"vuln_count":7,"unpatched_count":7,"last_vuln_date":32,"fetched_at":33},"version-cloak","Version Cloak","1.0.4","\u003Cp>Version Cloak is a hardening plugin that reduces the information opportunistic, automated scanners can read about your site. Version-matching bots fingerprint a site, look up known issues for the detected versions, and probe the easy targets first. This plugin shrinks that fingerprint.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Important:\u003C\u002Fstrong> this plugin obscures version and endpoint information. It does \u003Cstrong>not\u003C\u002Fstrong> patch vulnerable code. Keep your plugins, themes, and WordPress core updated — obscurity is a complement to patching, not a replacement for it.\u003C\u002Fp>\n\u003Ch4>Two version modes (per dropdown)\u003C\u002Fh4>\n\u003Cp>For \u003Cstrong>WordPress core\u003C\u002Fstrong> and for \u003Cstrong>plugins & themes\u003C\u002Fstrong>, choose one of:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Off\u003C\u002Fstrong> — leave the real version visible.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Obfuscate\u003C\u002Fstrong> — remove or block the version so it can’t be read.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Decoy\u003C\u002Fstrong> — report a plausible current version (auto-detected latest, or a value you set) so the site reads as up to date.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>What it covers\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>The WordPress \u003Ccode>\u003Cmeta name=\"generator\">\u003C\u002Fcode> tag, feed generators and the WLW manifest.\u003C\u002Fli>\n\u003Cli>Version query strings (\u003Ccode>?ver=\u003C\u002Fcode>) on enqueued CSS\u002FJS, and the same inside inline CSS.\u003C\u002Fli>\n\u003Cli>Version classes on the \u003Ccode>\u003Cbody>\u003C\u002Fcode> tag (e.g. page-builder version classes).\u003C\u002Fli>\n\u003Cli>Plugin-emitted \u003Ccode>\u003Cmeta name=\"generator\">\u003C\u002Fcode> tags.\u003C\u002Fli>\n\u003Cli>Plugin version strings in HTML comments (e.g. SEO plugins).\u003C\u002Fli>\n\u003Cli>Static version files served directly by the web server — \u003Ccode>readme.txt\u003C\u002Fcode>, \u003Ccode>changelog.txt\u003C\u002Fcode>, \u003Ccode>release_log.html\u003C\u002Fcode> — and version banner comments in CSS\u002FJS assets. In Obfuscate these are blocked (Apache\u002FLiteSpeed \u003Ccode>.htaccess\u003C\u002Fcode>, or an Nginx rule you add); in Decoy their version strings are rewritten and automatically reverted when you switch back.\u003C\u002Fli>\n\u003Cli>WordPress core \u003Ccode>readme.html\u003C\u002Fcode> \u002F \u003Ccode>license.txt\u003C\u002Fcode>, and the \u003Ccode>install.php\u003C\u002Fcode> \u002F \u003Ccode>upgrade.php\u003C\u002Fcode> setup pages (blocked for non-logged-in visitors so admins can still run updates).\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Other hardening\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>XML-RPC\u003C\u002Fstrong> — disable and return 404, or keep it but remove pingback and \u003Ccode>system.multicall\u003C\u002Fcode>.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>WP-Cron\u003C\u002Fstrong> — disable the HTTP pseudo-cron and block external hits to \u003Ccode>wp-cron.php\u003C\u002Fcode> (with an optional secret token for your system cron).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>REST user enumeration\u003C\u002Fstrong> — block the anonymous \u003Ccode>\u002Fwp-json\u002Fwp\u002Fv2\u002Fusers\u003C\u002Fcode> endpoint.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Author enumeration\u003C\u002Fstrong> — block the \u003Ccode>?author=N\u003C\u002Fcode> redirect that leaks usernames.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Reversible\u003C\u002Fh4>\n\u003Cp>Setting a mode to \u003Cstrong>Off\u003C\u002Fstrong>, or deactivating the plugin, restores the real version strings and removes the \u003Ccode>.htaccess\u003C\u002Fcode> rules — the site returns to its normal state.\u003C\u002Fp>\n","Hide or decoy plugin, theme and core versions from scanners. Neutralize XML-RPC and lock down WP-Cron.",157,"2026-06-26T12:00:00.000Z",[43,44,45,46,47],"hardening","security","version","wp-cron","xml-rpc","https:\u002F\u002Fgithub.com\u002Fspiri439\u002Fwordpress_obfuscation","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fversion-cloak.1.0.4.zip"]