Commenter Ignore Button Security & Risk Analysis

wordpress.org/plugins/commenter-ignore-button

Empower your users with a convenient tool to conceal comments by trolls and other annoying commenters.

10 active installs v1.0 PHP + WP 3.1+ Updated Nov 11, 2016
commenterscommentscommunityignore-commentertrolls
85
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Commenter Ignore Button Safe to Use in 2026?

Generally Safe

Score 85/100

Commenter Ignore Button has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 9yr ago
Risk Assessment

The commenter-ignore-button plugin version 1.0 exhibits a generally positive security posture based on the provided static analysis. There are no identified critical or high severity vulnerabilities in the taint analysis, and the plugin does not appear to have a history of known CVEs. Furthermore, the code signals indicate good practices such as 100% prepared statements for SQL queries and the presence of capability checks and nonce checks, which help protect against common attack vectors. The attack surface is also reported as zero, with no unprotected entry points.

However, there are areas for improvement. The output escaping rate is only 64%, meaning a significant portion of output is not properly escaped, which could lead to cross-site scripting (XSS) vulnerabilities if user-supplied data is directly rendered. The presence of file operations also warrants attention, as they could be exploited if not handled securely. While no critical taint flows or unpatched CVEs are evident, the potential for XSS due to insufficient output escaping remains a notable concern. The lack of recorded vulnerability history is a positive sign but doesn't entirely absolve the plugin of future risks, especially given the remaining output escaping issues.

Key Concerns

  • Insufficient output escaping
  • Presence of file operations
Vulnerabilities
None known

Commenter Ignore Button Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 17, 2026

Commenter Ignore Button Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
25
45 escaped
Nonce Checks
1
Capability Checks
2
File Operations
2
External Requests
0
Bundled Libraries
0

Output Escaping

64% escaped70 total outputs
Attack Surface

Commenter Ignore Button Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 22
actionadmin_post_save_cks_cib_stylesheet_optionscib-add-stylesheet.php:48
filterget_comment_author_linkcib-button.php:87
filtercomment_reply_link_argscib-button.php:88
filterwp_list_comments_argscib-button.php:91
filtercomment_reply_link_argscib-button.php:92
filtercomment_reply_link_argscib-button.php:95
filtercomment_textcib-button.php:98
filtercomment_reply_link_argscib-button.php:99
filtercomments_templatecib-button.php:382
actioninitcks_commenter_ignore_button.php:27
actioninitcks_commenter_ignore_button.php:28
actioninitcks_commenter_ignore_button.php:29
actionwp_headcks_commenter_ignore_button.php:30
actionadmin_initcks_commenter_ignore_button.php:31
actionadmin_initcks_commenter_ignore_button.php:32
actionplugins_loadedcks_commenter_ignore_button.php:33
actionadmin_menucks_commenter_ignore_button.php:34
actionadmin_print_stylescks_commenter_ignore_button.php:35
actionadmin_noticescks_commenter_ignore_button.php:36
actioncomment_form_beforecks_commenter_ignore_button.php:37
actionwp_enqueue_scriptscks_commenter_ignore_button.php:38
filtercomment_classcks_commenter_ignore_button.php:43
Maintenance & Trust

Commenter Ignore Button Maintenance & Trust

Maintenance Signals

WordPress version tested4.7.32
Last updatedNov 11, 2016
PHP min version
Downloads2K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

Commenter Ignore Button Developer Profile

CK MacLeod

4 plugins · 540 total installs

80
trust score
Avg Security Score
80/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Commenter Ignore Button

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/commenter-ignore-button/css/cib_add_css.css/wp-content/plugins/commenter-ignore-button/css/cib-admin-styles.css/wp-content/plugins/commenter-ignore-button/css/cks_cib_style.css/wp-content/plugins/commenter-ignore-button/js/jquery.cookie.js/wp-content/plugins/commenter-ignore-button/js/ignorer.js
Script Paths
/wp-content/plugins/commenter-ignore-button/js/jquery.cookie.js/wp-content/plugins/commenter-ignore-button/js/ignorer.js
Version Parameters
commenter-ignore-button/css/cib-admin-styles.css?v=commenter-ignore-button/js/jquery.cookie.js?ver=commenter-ignore-button/js/ignorer.js?ver=commenter-ignore-button/css/cks_cib_style.css?ver=

HTML / DOM Fingerprints

CSS Classes
commenter-ignore-button-wrappercommenter-ignore-button
Data Attributes
data-cib-ignore-textdata-cib-unignore-text
JS Globals
cib_titles
FAQ

Frequently Asked Questions about Commenter Ignore Button