
SpamShieldX Security & Risk Analysis
wordpress.org/plugins/automatic-break-iframesSpamShieldX is the ultimate solution for protecting your WordPress website from spam and iframe abuse. Our plugin blocks malicious iframes and prevent …
Is SpamShieldX Safe to Use in 2026?
Generally Safe
Score 92/100SpamShieldX has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "automatic-break-iframes" v1.2 plugin presents a generally good security posture based on the provided static analysis and vulnerability history. There are no identified critical or high-severity vulnerabilities, and the plugin boasts zero known CVEs. The absence of dangerous functions, file operations, external HTTP requests, and external HTTP requests further contributes to a strong security foundation. However, there are areas for improvement. The plugin exhibits a concerning lack of output escaping, with only 25% of outputs being properly escaped. This could potentially lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is not sanitized before being displayed. Additionally, the single SQL query is not using prepared statements, posing a risk of SQL injection if dynamic data is involved in the query. The plugin also lacks nonce checks and relies on a single capability check for its entry points, which could be insufficient for robust authorization in some scenarios.
Key Concerns
- Low output escaping percentage
- SQL query not using prepared statements
- Lack of nonce checks
SpamShieldX Security Vulnerabilities
SpamShieldX Release Timeline
SpamShieldX Code Analysis
SQL Query Safety
Output Escaping
SpamShieldX Attack Surface
WordPress Hooks 4
Maintenance & Trust
SpamShieldX Maintenance & Trust
Maintenance Signals
Community Trust
SpamShieldX Alternatives
Antispam Bee
antispam-bee
Sophisticated antispam plugin for effective daily comment and trackback spam-fighting. Built with data protection and privacy in mind.
CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7
contact-form-7-honeypot
Addons for Contact Form 7 — Honeypot, Database Entries, Redirection, Spam Protection, Webhooks, ACF integration for Contact Form 7, and more.
WP Armour – Honeypot Anti Spam
honeypot
Fastest growing Anti Spam plugin. No API calls, subscriptions, captcha or puzzle. Full GDPR complaint. For comments, contact form, login, registration
Stop Spammers Classic
stop-spammer-registrations-plugin
A simplified, restored, and preserved version of the original Stop Spammers plugin.
Anti-spam, Spam protection, ReCaptcha for all forms and GDPR-compliant
gdpr-compliant-recaptcha-for-all-forms
Anti-spam - CAPTCHA that protects all forms against spam and brute-force. Invisible and GDPR-compliant.
SpamShieldX Developer Profile
1 plugin · 10 total installs
How We Detect SpamShieldX
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
wrapbutton-primarytop