CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Security & Risk Analysis

wordpress.org/plugins/commentxpert

One stop easy solution for all: private comments, spam cleanup, rich formatting, CAPTCHA, like-dislike (votes) and full disable options—secure and fle …

10 active installs v1.1.5 PHP 5.4+ WP 5.5+ Updated May 15, 2025
block-commentscommentcomment-captchacomment-voteprivate-comment
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Safe to Use in 2026?

Generally Safe

Score 92/100

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The "commentxpert" plugin version 1.1.5 exhibits a strong security posture based on the provided static analysis and vulnerability history. The absence of any recorded CVEs and the thorough implementation of security best practices like prepared statements for SQL queries, proper output escaping, and a significant number of nonce and capability checks indicate a well-developed and secure codebase. The limited attack surface, consisting only of two AJAX handlers with, crucially, no indication of them being unprotected, further reinforces this positive assessment. There are no identified dangerous functions, file operations, or vulnerabilities detected by the taint analysis, which is a testament to the developers' attention to security.

However, a minor area for observation is the single external HTTP request. While not inherently a vulnerability, it represents a potential point of failure or a vector for further exploitation if the external resource is compromised. Nonetheless, considering the comprehensive security measures in place and the lack of any known vulnerabilities or critical code signals, the plugin is assessed as highly secure. The consistent absence of past vulnerabilities and the robust static analysis results suggest a proactive approach to security by the developers, making "commentxpert" v1.1.5 a low-risk plugin.

Key Concerns

  • External HTTP request
Vulnerabilities
None known

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Release Timeline

v1.1.5Current
v1.1.4
v1.1.3
v1.1.2
v1.1.1
v1.1.0
v1.0.9
v1.0.8
v1.0.7
v1.0.6
v1.0.5
v1.0.4
v1.0.3
v1.0.2
v1.0.1
v1.0.0
Code Analysis
Analyzed Apr 16, 2026

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
1 prepared
Unescaped Output
0
109 escaped
Nonce Checks
9
Capability Checks
5
File Operations
0
External Requests
1
Bundled Libraries
0

SQL Query Safety

100% prepared1 total queries

Output Escaping

100% escaped109 total outputs
Attack Surface

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Attack Surface

Entry Points2
Unprotected0

AJAX Handlers 2

authwp_ajax_cmntxpt_handle_votecommentxpert.php:805
noprivwp_ajax_cmntxpt_handle_votecommentxpert.php:806
WordPress Hooks 38
actionadmin_menucommentxpert.php:33
actionplugins_loadedcommentxpert.php:47
actionadmin_initcommentxpert.php:166
actionadmin_noticescommentxpert.php:392
filtercomment_form_submit_fieldcommentxpert.php:414
actioncomment_postcommentxpert.php:437
filterthe_commentscommentxpert.php:450
actionedit_commentcommentxpert.php:465
actioncomment_postcommentxpert.php:487
actioncomment_edit_formcommentxpert.php:495
filtercomment_row_actionscommentxpert.php:508
actionadmin_initcommentxpert.php:550
actionadmin_noticescommentxpert.php:567
filterbulk_actions-edit-commentscommentxpert.php:575
filterhandle_bulk_actions-edit-commentscommentxpert.php:597
actionadmin_noticescommentxpert.php:619
filterget_comments_numbercommentxpert.php:668
filtercomment_form_default_fieldscommentxpert.php:681
filterget_comment_author_linkcommentxpert.php:693
filterget_comment_author_urlcommentxpert.php:699
filterpre_comment_contentcommentxpert.php:711
filtercomments_opencommentxpert.php:721
filterpings_opencommentxpert.php:722
filtercomment_textcommentxpert.php:753
actionwp_enqueue_scriptscommentxpert.php:819
actionwp_headcommentxpert.php:845
actioncomment_postcommentxpert.php:1015
actionedit_commentcommentxpert.php:1016
actiondelete_commentcommentxpert.php:1017
actionadmin_menucommentxpert.php:1030
actionadmin_initcommentxpert.php:1101
actioncomment_formcommentxpert.php:1222
filterpreprocess_commentcommentxpert.php:1276
actioncomment_form_after_fieldscommentxpert.php:1306
actionwp_footercommentxpert.php:1315
actionwp_enqueue_scriptscommentxpert.php:1318
filterpreprocess_commentcommentxpert.php:1366
filtercomment_textcommentxpert.php:1372
Maintenance & Trust

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedMay 15, 2025
PHP min version5.4
Downloads1K

Community Trust

Rating100/100
Number of ratings1
Active installs10
Developer Profile

CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features Developer Profile

Raghav Chudasama

1 plugin · 10 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/commentxpert/admin/css/settings.css/wp-content/plugins/commentxpert/admin/js/settings.js
Script Paths
/wp-content/plugins/commentxpert/admin/js/settings.js

HTML / DOM Fingerprints

CSS Classes
cmntxpt-togglelatest_feature_header
Data Attributes
data-cmntxpt-toggle
JS Globals
cmntxpt_scripts_obj
FAQ

Frequently Asked Questions about CommentXpert – Private Comments, Comment Modifications, and Advanced Commenting Features