[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f2SF8oXRwcQxO4VjyLb3s1-uwN2NvMgRpg1lMqg4IbLg":3},{"slug":4,"display_name":4,"profile_url":5,"plugin_count":6,"total_installs":7,"avg_security_score":8,"avg_patch_time_days":9,"trust_score":10,"computed_at":11,"plugins":12},"pontocinza","https:\u002F\u002Fprofiles.wordpress.org\u002Fpontocinza\u002F",2,10,100,30,94,"2026-08-24T05:39:11.105Z",[13,35],{"slug":14,"name":15,"version":16,"author":4,"author_profile":5,"description":17,"short_description":18,"active_installs":7,"downloaded":19,"rating":20,"num_ratings":20,"last_updated":21,"tested_up_to":22,"requires_at_least":23,"requires_php":24,"tags":25,"homepage":31,"download_link":32,"security_score":8,"vuln_count":20,"unpatched_count":20,"last_vuln_date":33,"fetched_at":34},"nocaptcha-spam-filter-for-contact-form-7","NoCaptcha Spam Filter for Contact Form 7","1.1.0","\u003Cp>NoCaptcha Spam Filter for Contact Form 7 provides a deterministic, cache-safe, multi-layered defense against automated form submissions for Contact Form 7 without the need for CAPTCHAs or external libraries.\u003C\u002Fp>\n\u003Cp>The plugin uses a combination of:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Unique Honeypot: A site-specific hidden field that traps bots.\u003C\u002Fli>\n\u003Cli>Cryptographic Signing: Ensures form tokens are genuine and haven’t been tampered with.\u003C\u002Fli>\n\u003Cli>Anti-Replay Nonces: Each submission is unique; tokens cannot be reused.\u003C\u002Fli>\n\u003Cli>Time-Check Validation: Blocks bots that fill out forms faster than humanly possible.\u003C\u002Fli>\n\u003Cli>Cache-Safe Architecture: Automatically detects stale tokens on cached pages and refreshes them via a lightweight REST API fallback.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Scope of Protection\u003C\u002Fh3>\n\u003Cp>This plugin is designed to block the vast majority of automated spam submissions (99% of common web crawlers) in Contact Form 7, with zero impact on user experience or performance. However, please note:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Not a WAF: It is not a substitute for a Web Application Firewall or server-level security layers for mitigating sophisticated DDoS attacks.\u003C\u002Fli>\n\u003Cli>Targeted Attacks: Highly sophisticated bots using headless browsers or manual human bypasses (spam farms) fall outside the scope of lightweight algorithmic protection.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>For maximum security, we recommend using this plugin as part of a multi-layered defense strategy.\u003C\u002Fp>\n\u003Ch3>Configuration (optional, only for advanced users)\u003C\u002Fh3>\n\u003Cp>You can override defaults in ‘wp-config.php’:\u003Cbr \u002F>\n    \u003Ccode>php\u003Cbr \u002F>\ndefine('CF7NCSP_DOMAIN_SALT', 'your-random-string');\u003Cbr \u002F>\ndefine('CF7NCSP_TTL', 2400);      \u002F\u002F Token lifetime (seconds)\u003Cbr \u002F>\ndefine('CF7NCSP_MIN_TIME', 20);   \u002F\u002F Minimum time before submission\u003C\u002Fcode>\u003Cbr \u002F>\nRecommendations\u003Cbr \u002F>\n* Use a long, random string for ‘CF7NCSP_DOMAIN_SALT’\u003Cbr \u002F>\n* Keep ‘CF7NCSP_MIN_TIME’ between 10–30 seconds\u003C\u002Fp>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>This plugin is designed with privacy-first principles:\u003Cbr \u002F>\n* No PII Collection: It does not collect, store, or transmit any Personally Identifiable Information (PII).\u003Cbr \u002F>\n* No Persistent IP Storage: IP addresses are used transiently for rate limiting and are not stored in plain form or retained beyond a short-lived, temporary cache.\u003Cbr \u002F>\n* Local Processing: All validation happens on your server. No data is sent to third-party services.\u003Cbr \u002F>\n* Cookieless: The plugin does not set any browser cookies.\u003C\u002Fp>\n\u003Ch3>Disclaimer\u003C\u002Fh3>\n\u003Cp>This plugin is provided “as is”, without warranty of any kind, express or implied. Use at your own risk. While best efforts have been made to ensure reliability and security, the author is not liable for any damages or losses resulting from its use.\u003C\u002Fp>\n\u003Cp>** DEVELOPER’S NOTE: **\u003C\u002Fp>\n\u003Cp>This plugin is designed to be a lightweight, “set and forget” solution. It focuses on stability and minimal maintenance, with updates provided as needed for bug fixes and compatibility with WordPress and Contact Form 7. Because it is built to be self-sufficient, please be aware that the developer will not implement non-critical feature requests.\u003C\u002Fp>\n","Honeypot, signed security tokens, and anti-replay protection for Contact Form 7. Built for performance and full-page cache compatibility.",261,0,"2026-04-24T17:14:00.000Z","6.9.5","5.9","7.4",[26,27,28,29,30],"anti-spam","cf7","contact-form-7","security","spam-protection","","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fnocaptcha-spam-filter-for-contact-form-7.1.1.0.zip",null,"2026-07-22T17:31:50.256Z",{"slug":36,"name":37,"version":38,"author":4,"author_profile":5,"description":39,"short_description":40,"active_installs":20,"downloaded":41,"rating":20,"num_ratings":20,"last_updated":42,"tested_up_to":22,"requires_at_least":43,"requires_php":24,"tags":44,"homepage":48,"download_link":49,"security_score":8,"vuln_count":20,"unpatched_count":20,"last_vuln_date":33,"fetched_at":34},"internal-pingback-comments","Internal Pingback Comments","1.0.1","\u003Cp>When a post is published or updated, Internal Pingback Comments scans its content, finds all internal links, and creates a pingback-style comment on each linked post. It mimics native WordPress pingback behavior but eliminates the need for XML-RPC or outbound network requests.\u003C\u002Fp>\n\u003Cp>Works with posts only. No settings page, no configuration.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>How it works\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The plugin parses post content with DOMDocument — not regex — so it handles real-world HTML correctly: nested tags, encoded entities, relative and protocol-relative URLs. For each internal link found, it inserts a pingback comment on the target post. The comment includes a short excerpt from the source post, with image captions (figcaption) stripped so they do not bleed into the pingback text.\u003C\u002Fp>\n\u003Cp>Duplicate detection is precise: the source permalink is stored as private comment meta, and the plugin queries that meta before every insert. Republishing or updating a post never creates duplicate comments. New links added to an existing post will generate their own pingbacks on the next save.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>What the pingback looks like to your theme\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>The comment is stored with \u003Ccode>comment_type = 'pingback'\u003C\u002Fcode> and auto-approved. Your theme renders it exactly as it would render a native pingback. If your theme does not display pingbacks, the comment will be stored in the database but remain hidden on the front end.\u003C\u002Fp>\n\u003Ch3>Disclaimer\u003C\u002Fh3>\n\u003Cp>This plugin is provided “as is”, without warranty of any kind. While best efforts have been made to ensure reliability and security, the author is not liable for any damages or losses resulting from its use.\u003C\u002Fp>\n","Detects internal links in posts and automatically inserts a pingback-style comment on each linked post. No XML-RPC required.",347,"2026-05-03T15:57:00.000Z","5.0",[45,46,47],"comments","internal-links","pingback","https:\u002F\u002Fwordpress.org\u002Fplugins\u002Finternal-pingback-comments","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finternal-pingback-comments.1.0.1.zip"]