
HumanCaptcha by Outerbridge Security & Risk Analysis
wordpress.org/plugins/humancaptchaHumanCaptcha is a Captcha that uses questions that require human logic to answer them to the WordPress login form, comments form and registration form …
Is HumanCaptcha by Outerbridge Safe to Use in 2026?
Generally Safe
Score 85/100HumanCaptcha by Outerbridge has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The humancaptcha plugin v4.1.1 presents a concerning security posture despite a seemingly clean vulnerability history and a limited attack surface. While there are no recorded CVEs and the static analysis shows no directly dangerous functions or external HTTP requests, several code signals raise red flags. The fact that 44% of SQL queries are not using prepared statements is a significant risk, potentially leading to SQL injection vulnerabilities. Furthermore, a high percentage (69%) of output is not properly escaped, which could open the door to cross-site scripting (XSS) attacks. The single taint flow with an unsanitized path, though not flagged as critical or high severity, still represents an area where malicious input could be processed improperly.
Key Concerns
- SQL queries not using prepared statements
- Output escaping is not properly implemented
- Flows with unsanitized paths
HumanCaptcha by Outerbridge Security Vulnerabilities
HumanCaptcha by Outerbridge Code Analysis
SQL Query Safety
Output Escaping
Data Flow Analysis
HumanCaptcha by Outerbridge Attack Surface
WordPress Hooks 10
Maintenance & Trust
HumanCaptcha by Outerbridge Maintenance & Trust
Maintenance Signals
Community Trust
HumanCaptcha by Outerbridge Alternatives
I am Human
i-am-human
A customisable human detection plugin, that isn't annoying. Seriously.
SiteGuard WP Plugin
siteguard
SiteGurad WP Plugin is the plugin specialized for the protection against the attack to the management page and login.
CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7
contact-form-7-honeypot
Addons for Contact Form 7 — Honeypot, Database Entries, Redirection, Spam Protection, Webhooks, ACF integration for Contact Form 7, and more.
Really Simple CAPTCHA
really-simple-captcha
Really Simple CAPTCHA is a CAPTCHA module intended to be called from other plugins. It is originally created for my Contact Form 7 plugin.
Advanced Google reCAPTCHA
advanced-google-recaptcha
Captcha protection against spam comments & brute force login attacks using Google reCAPTCHA.
HumanCaptcha by Outerbridge Developer Profile
3 plugins · 1K total installs
How We Detect HumanCaptcha by Outerbridge
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
humancaptcha/style.css?ver=humancaptcha/script.js?ver=HTML / DOM Fingerprints
comment-form-emaildata-humancaptcha-idobr_answer_data