Disable Comments by click5 Security & Risk Analysis

wordpress.org/plugins/disable-comments-by-click5

Best WordPress plugin to disable comments on your website and protect yourself from spammers.

100 active installs v1.0.6 PHP 7.0+ WP 5.3+ Updated Nov 14, 2025
click5commentsdisabledisable-commentsspam
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Safety Verdict

Is Disable Comments by click5 Safe to Use in 2026?

Generally Safe

Score 100/100

Disable Comments by click5 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 4mo ago
Risk Assessment

The "disable-comments-by-click5" plugin version 1.0.6 demonstrates a strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, and cron events, along with zero dangerous functions, raw SQL queries, or file operations, significantly limits its attack surface. Furthermore, the high percentage of properly escaped output and the complete absence of taint analysis findings suggest careful development practices regarding data handling and sanitization. The plugin also has no recorded vulnerability history, indicating a stable and secure past.

While the current analysis shows no direct vulnerabilities, the complete lack of nonce checks and capability checks across all entry points is a notable concern. This suggests that any future additions to the plugin's functionality, even if seemingly minor, could potentially introduce security weaknesses if these essential checks are not implemented. The plugin's reliance on its current minimal attack surface for security, rather than robust authentication and authorization mechanisms, is a potential area for future risk.

Key Concerns

  • Lack of Nonce Checks
  • Lack of Capability Checks
Vulnerabilities
None known

Disable Comments by click5 Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Code Analysis
Analyzed Mar 16, 2026

Disable Comments by click5 Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
3
46 escaped
Nonce Checks
0
Capability Checks
0
File Operations
0
External Requests
0
Bundled Libraries
0

Output Escaping

94% escaped49 total outputs
Attack Surface

Disable Comments by click5 Attack Surface

Entry Points0
Unprotected0
WordPress Hooks 41
filterxmlrpc_enableddisable-comments-by-click5.php:16
actionplugins_loadeddisable-comments-by-click5.php:34
filterpings_opendisable-comments-by-click5.php:45
filterxmlrpc_methodsdisable-comments-by-click5.php:46
filterwpdisable-comments-by-click5.php:47
filterpings_opendisable-comments-by-click5.php:48
filterxmlrpc_enableddisable-comments-by-click5.php:49
filterpings_opendisable-comments-by-click5.php:53
filterpre_option_default_pingback_flagdisable-comments-by-click5.php:54
filterrest_pre_insert_commentdisable-comments-by-click5.php:60
filterrest_endpointsdisable-comments-by-click5.php:62
filtercomments_opendisable-comments-by-click5.php:84
filterpings_opendisable-comments-by-click5.php:85
filtercomments_arraydisable-comments-by-click5.php:88
filterpings_opendisable-comments-by-click5.php:90
filterpre_option_default_pingback_flagdisable-comments-by-click5.php:93
actionwp_dashboard_setupdisable-comments-by-click5.php:94
filtercomments_arraydisable-comments-by-click5.php:95
actionadmin_menudisable-comments-by-click5.php:99
actionadmin_menudisable-comments-by-click5.php:102
actionadmin_footerdisable-comments-by-click5.php:105
filtersite_status_testsdisable-comments-by-click5.php:112
actionwidgets_initdisable-comments-by-click5.php:169
actiontemplate_redirectdisable-comments-by-click5.php:170
actiontemplate_redirectdisable-comments-by-click5.php:173
actionadmin_initdisable-comments-by-click5.php:174
actionadmin_bar_menudisable-comments-by-click5.php:221
filtershow_recent_comments_widget_styledisable-comments-by-click5.php:233
filtercomments_arraydisable-comments-by-click5.php:267
filtercomments_templatedisable-comments-by-click5.php:277
filtercomments_templatedisable-comments-by-click5.php:281
filterwp_disable_comments_by_click5_enableddisable-comments-by-click5.php:290
actionupgrader_process_completedisable-comments-by-click5.php:328
filtercustom_menu_orderdisable-comments-by-click5.php:344
actionadmin_menudisable-comments-by-click5.php:365
actionadmin_initdisable-comments-by-click5.php:371
actionactivated_plugindisable-comments-by-click5.php:379
filterplugin_row_metadisable-comments-by-click5.php:389
actionclick5_disable_comments_default_optionsdisable-comments-by-click5.php:422
actionplugins_loadeddisable-comments-by-click5.php:460
actionadmin_enqueue_scriptsdisable-comments-by-click5.php:700
Maintenance & Trust

Disable Comments by click5 Maintenance & Trust

Maintenance Signals

WordPress version tested6.8.5
Last updatedNov 14, 2025
PHP min version7.0
Downloads5K

Community Trust

Rating0/100
Number of ratings0
Active installs100
Developer Profile

Disable Comments by click5 Developer Profile

click5

6 plugins · 7K total installs

69
trust score
Avg Security Score
85/100
Avg Patch Time
375 days
View full developer profile
Detection Fingerprints

How We Detect Disable Comments by click5

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Version Parameters
disable-comments-by-click5/disable-comments-by-click5.php?ver=wp-content/plugins/disable-comments-by-click5/?ver=

HTML / DOM Fingerprints

HTML Comments
<!-- Comments are closed. -->
JS Globals
click5_disable_comments_VERSION
REST Endpoints
/wp-json/wp/v2/comments
FAQ

Frequently Asked Questions about Disable Comments by click5