[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fwcRQmt3b1ar6zWfodiZzUverlKcUW3vJSpHgY5ZWBEo":3,"$fX-lTfu2GBf_Tre5XDojGkoweJQYJ84kyZqMARqF_FKI":120,"$fB6VideJSGngFLSNtEWneTzI-Ag1KuEKSELiEq6a9X4U":125},{"slug":4,"name":5,"version":6,"author":7,"author_profile":8,"description":9,"short_description":10,"active_installs":11,"downloaded":12,"rating":11,"num_ratings":11,"last_updated":13,"tested_up_to":14,"requires_at_least":15,"requires_php":16,"tags":17,"homepage":23,"download_link":24,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27,"discovery_status":28,"vulnerabilities":29,"developer":30,"crawl_stats":26,"alternatives":36,"analysis":26,"fingerprints":26},"neutrope-quiet-shield","Neutrope Quiet Shield","0.1.2","Neutrope Inc.","https:\u002F\u002Fprofiles.wordpress.org\u002Fneutropeinc\u002F","\u003Cp>Neutrope Quiet Shield adds lightweight spam and unsolicited-sales filtering to\u003Cbr \u002F>\nContact Form 7 submissions. The idea is simple: let spam and cold sales\u003Cbr \u002F>\nmail be received quietly without disturbing the people running the site.\u003C\u002Fp>\n\u003Cp>Each submission is scored against a small set of checks you control:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Japanese character ratio: flag messages with too little Japanese text.\u003C\u002Fli>\n\u003Cli>URL limit: flag messages that contain more links than you allow.\u003C\u002Fli>\n\u003Cli>Submission speed: flag forms submitted suspiciously fast after they were\u003Cbr \u002F>\nshown. The timing value is signed so it cannot be tampered with.\u003C\u002Fli>\n\u003Cli>Repeat submissions: flag three or more submissions from the same visitor\u003Cbr \u002F>\nwithin five minutes.\u003C\u002Fli>\n\u003Cli>NG words: flag messages containing any keyword from your own list.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>When a submission is flagged you choose what happens with Quiet Mode:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Quiet Mode on (default): the visitor sees the normal success message, but\u003Cbr \u002F>\nno mail is sent. The reason is written to the log.\u003C\u002Fli>\n\u003Cli>Quiet Mode off: the submission is stopped with the standard Contact Form\u003Cbr \u002F>\n7 error message.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>The plugin is deliberately small. It makes no external network requests,\u003Cbr \u002F>\ncreates no database tables, and shows no ads or upsells. Configuration is\u003Cbr \u002F>\nstored in a single option, and the log keeps only decision metadata plus a\u003Cbr \u002F>\nshort, salted IP hash. Message bodies, e-mail addresses and names are never\u003Cbr \u002F>\nstored.\u003C\u002Fp>\n\u003Cp>If Contact Form 7 is not active, the plugin still activates safely and\u003Cbr \u002F>\nshows an admin notice instead of causing an error.\u003C\u002Fp>\n\u003Cp>This plugin is an independent add-on and is not affiliated with or endorsed\u003Cbr \u002F>\nby the authors of Contact Form 7.\u003C\u002Fp>\n\u003Ch3>Features\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>Five independent checks, each configurable from one settings page.\u003C\u002Fli>\n\u003Cli>Quiet Mode to silently drop flagged mail or stop it with an error.\u003C\u002Fli>\n\u003Cli>Dashboard with today’s passed and blocked counts and a recent activity\u003Cbr \u002F>\nlog.\u003C\u002Fli>\n\u003Cli>Tamper-evident submission-speed measurement using a signed field.\u003C\u002Fli>\n\u003Cli>IP addresses are hashed, never stored in raw form.\u003C\u002Fli>\n\u003Cli>No external requests, no tracking, no database tables, no ads.\u003C\u002Fli>\n\u003Cli>GPL-2.0-or-later. The full license text is bundled in the LICENSE file.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>License\u003C\u002Fh3>\n\u003Cp>This plugin is licensed under the GPL-2.0-or-later. The full license text\u003Cbr \u002F>\nis included in the bundled LICENSE file.\u003Cbr \u002F>\nLicense URI: https:\u002F\u002Fwww.gnu.org\u002Flicenses\u002Fgpl-2.0.html\u003C\u002Fp>\n","Quietly deflect spam and unsolicited sales messages sent through Contact Form 7. Lightweight, no external calls, no stored personal data.",0,81,"2026-06-17T00:23:00.000Z","7.0.2","6.4","7.4",[18,19,20,21,22],"antispam","contact-form-7","forms","spam","spam-protection","https:\u002F\u002Fneutrope.biz\u002Fneutrope-quiet-shield\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fneutrope-quiet-shield.0.1.2.zip",100,null,"2026-07-22T17:31:50.256Z","no_bundle",[],{"slug":31,"display_name":7,"profile_url":8,"plugin_count":32,"total_installs":11,"avg_security_score":25,"avg_patch_time_days":33,"trust_score":34,"computed_at":35},"neutropeinc",5,30,94,"2026-08-29T04:19:58.900Z",[37,56,74,90,104],{"slug":38,"name":39,"version":40,"author":41,"author_profile":42,"description":43,"short_description":44,"active_installs":45,"downloaded":46,"rating":25,"num_ratings":47,"last_updated":48,"tested_up_to":14,"requires_at_least":49,"requires_php":16,"tags":50,"homepage":54,"download_link":55,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"fullworks-anti-spam","Anti-Spam Protection – No API Key, GDPR Friendly","3.0.1","fullworks","https:\u002F\u002Fprofiles.wordpress.org\u002Ffullworks\u002F","\u003Cp>\u003Cstrong>Is Contact Form 7 spam destroying your mornings?\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>No API key. No data leaving your server. No charges for commercial use. Just effective spam protection that works the moment you activate it.\u003C\u002Fp>\n\u003Ch4>What Gets Protected (FREE)\u003C\u002Fh4>\n\u003Cp>✅ \u003Cstrong>Contact Form 7\u003C\u002Fstrong> – Block bot spam automatically\u003Cbr \u002F>\n✅ \u003Cstrong>WPForms Lite & Pro\u003C\u002Fstrong> – Stop automated submissions\u003Cbr \u002F>\n✅ \u003Cstrong>Jetpack Contact Forms\u003C\u002Fstrong> – Filter bot spam instantly\u003Cbr \u002F>\n✅ \u003Cstrong>Fluent Forms\u003C\u002Fstrong> – Eliminate bot attacks\u003Cbr \u002F>\n✅ \u003Cstrong>SureForms\u003C\u002Fstrong> – Block bot spam submissions\u003Cbr \u002F>\n✅ \u003Cstrong>WordPress Comments\u003C\u002Fstrong> – Clean comment spam from badbots\u003Cbr \u002F>\n✅ \u003Cstrong>Business sites included\u003C\u002Fstrong> – No commercial fees ever\u003C\u002Fp>\n\u003Cp>Works immediately after activation. No configuration. No learning curve. No monthly costs.\u003C\u002Fp>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>3 Steps to Spam-Free Contact Forms:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>\u003Cstrong>Install\u003C\u002Fstrong> – Search “Contact Form 7 spam” in your WordPress dashboard\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Activate\u003C\u002Fstrong> – One click to turn on protection\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Relax\u003C\u002Fstrong> – Your Contact Form 7 and WPForms and others are now protected from bots\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>The moment you activate, spam bots are automatically blocked on all your forms and comments. No settings to configure. No technical knowledge required. No ongoing maintenance.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Most users report 95-100% spam reduction within the first 24 hours.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>Tomorrow morning, check your inbox. Instead of dozens of spam submissions, you’ll see only real customer inquiries. That’s the peace of mind this plugin delivers.\u003C\u002Fp>\n\u003Ch4>Why Contact Form 7 Needs This\u003C\u002Fh4>\n\u003Cp>Contact Form 7 is WordPress’s most popular form plugin with over 5 million active installations. It’s lightweight, flexible, and completely free.\u003C\u002Fp>\n\u003Cp>But it doesn’t include spam protection.\u003C\u002Fp>\n\u003Cp>Without protection, Contact Form 7 sites get hammered. Bot networks discover unprotected forms and flood them with submissions. Your inbox fills with junk. You waste time sorting real inquiries from spam. Worse, you risk missing legitimate customers buried in the noise.\u003C\u002Fp>\n\u003Cp>This plugin fixes that problem. For free. Forever.\u003C\u002Fp>\n\u003Ch4>Free vs Pro: What You Get\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>FREE Version (Most Sites Need Only This):\u003C\u002Fstrong>\u003Cbr \u002F>\n✅ Contact Form 7 bot spam blocked\u003Cbr \u002F>\n✅ WPForms automated spam stopped\u003Cbr \u002F>\n✅ Jetpack forms protected\u003Cbr \u002F>\n✅ Fluent Forms secured\u003Cbr \u002F>\n✅ SureForms protected\u003Cbr \u002F>\n✅ WordPress comment spam eliminated\u003Cbr \u002F>\n✅ Works on business\u002Fcommercial sites\u003Cbr \u002F>\n✅ Spam statistics dashboard\u003C\u002Fp>\n\u003Cp>Automated bots cause 95%+ of spam. The free version handles this completely.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>PRO Version (For Advanced Needs):\u003C\u002Fstrong>\u003Cbr \u002F>\n⚡ Private Machine Learning human spam detection (runs on your own server, learns from your spam)\u003Cbr \u002F>\n⚡ Gravity Forms integration\u003Cbr \u002F>\n⚡ WooCommerce registration protection\u003Cbr \u002F>\n⚡ Email quarantine for review\u003Cbr \u002F>\n⚡ Custom IP blocklists\u003Cbr \u002F>\n⚡ Allow\u002Fdeny pattern rules\u003Cbr \u002F>\n⚡ Priority support\u003C\u002Fp>\n\u003Cp>Most Contact Form 7 users never need Pro. But if you’re getting manually-typed spam or need enterprise features, Pro has you covered.\u003C\u002Fp>\n\u003Ch4>Why This Works Better Than CAPTCHA\u003C\u002Fh4>\n\u003Cp>CAPTCHA makes your visitors prove they’re human by solving puzzles. It’s annoying, hurts conversions, and still lets some spam through.\u003C\u002Fp>\n\u003Cp>This plugin takes a smarter approach:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Invisible honeypot fields\u003C\u002Fstrong> – Bots can’t resist filling hidden fields that humans never see\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Timing analysis\u003C\u002Fstrong> – Bots submit forms instantly; real people don’t\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Behavioral fingerprinting\u003C\u002Fstrong> – Bot patterns are detectable and consistent\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No user friction\u003C\u002Fstrong> – Your visitors never know the protection exists\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightning fast\u003C\u002Fstrong> – All processing happens locally on your server\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>Your Contact Form 7 stays fast. Your conversion rates stay high. Spam disappears.\u003C\u002Fp>\n\u003Cp>It just works. Quietly. Effectively. Completely free.\u003C\u002Fp>\n\u003Ch4>Common Questions Answered\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>“Will this work with my existing Contact Form 7 setup?”\u003C\u002Fstrong>\u003Cbr \u002F>\nYes. It integrates automatically with all CF7 configurations, custom fields, and extensions. Nothing breaks. Spam just stops.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>“I’m not technical. Can I install this?”\u003C\u002Fstrong>\u003Cbr \u002F>\nIf you can install a WordPress plugin, you can use this. There’s literally nothing to configure. Install, activate, done.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>“What about sites that aren’t in English?”\u003C\u002Fstrong>\u003Cbr \u002F>\nWorks perfectly on all languages. The spam detection doesn’t depend on language – it detects bot behavior patterns.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>“My site sells products. Do I have to pay?”\u003C\u002Fstrong>\u003Cbr \u002F>\nNo. Unlike some popular anti-spam solutions that charge business sites, this is free for commercial use. No exceptions. No hidden fees.\u003C\u002Fp>\n\u003Ch4>Ready to Stop Contact Form 7 Spam?\u003C\u002Fh4>\n\u003Cp>\u003Cstrong>Installation takes 30 seconds:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Col>\n\u003Cli>In your WordPress dashboard, go to Plugins \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Add New\u003C\u002Fli>\n\u003Cli>Search for “Contact Form 7 spam”\u003C\u002Fli>\n\u003Cli>Click Install, then Activate\u003C\u002Fli>\n\u003Cli>Done – your forms are now protected\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Cp>Check your email tomorrow. Enjoy the silence.\u003C\u002Fp>\n\u003Cp>For detailed statistics and settings, visit Settings \u003Cspan aria-hidden=\"true\" class=\"wp-exclude-emoji\">→\u003C\u002Fspan> Anti Spam after activation.\u003C\u002Fp>\n\u003Ch3>Go Pro\u003C\u002Fh3>\n\u003Cp>Most Contact Form 7 users never need Pro – the free version eliminates their spam problem completely.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>What makes Pro unique – private Machine Learning:\u003C\u002Fstrong> Unlike cloud filters that ship your visitors’ messages off to an external service, the Pro classifier runs entirely on your own server. It learns from the spam \u003Cem>you\u003C\u002Fem> classify, gets smarter the more you use it, and never sends data to a third party outside your control – no external cloud service, no data sharing, no privacy trade-off.\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Pro delivers:\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>✅ \u003Cstrong>Private Machine Learning Human Spam Detection\u003C\u002Fstrong> – Stops manually-typed spam that gets past basic filters, using Machine Learning that runs entirely on your own server and learns from \u003Cem>your\u003C\u002Fem> spam classifications – your visitors’ data never leaves your site or goes to a third party outside your control\u003Cbr \u002F>\n✅ \u003Cstrong>Gravity Forms Integration\u003C\u002Fstrong> – Complete protection for premium form users\u003Cbr \u002F>\n✅ \u003Cstrong>WooCommerce Registration Blocking\u003C\u002Fstrong> – Stop fake account spam\u003Cbr \u002F>\n✅ \u003Cstrong>Email Quarantine\u003C\u002Fstrong> – Review and rescue any legitimate messages caught by mistake\u003Cbr \u002F>\n✅ \u003Cstrong>Quarantine \u002F Audit Log\u003C\u002Fstrong> – Full spam traceability: see every submission the plugin checks, allowed or blocked, and exactly why it was decided (bot trap, Machine Learning human-spam score, single-word, deny rule, real-time IP blocklist or allow list) – with the analysed content, masked IP and country, plus one-click allow\u002Fdeny actions to fix any mistake\u003Cbr \u002F>\n✅ \u003Cstrong>Custom Allow\u002FDeny Rules\u003C\u002Fstrong> – Block specific IPs, patterns, or keywords\u003Cbr \u002F>\n✅ \u003Cstrong>IP Blocklist Checking\u003C\u002Fstrong> – Automatic blocking of known spam networks\u003Cbr \u002F>\n✅ \u003Cstrong>Priority Support\u003C\u002Fstrong> – Get help directly from the developers\u003C\u002Fp>\n\u003Cp>\u003Cstrong>Perfect for:\u003C\u002Fstrong>\u003Cbr \u002F>\n– High-traffic sites getting manually-entered spam\u003Cbr \u002F>\n– Agencies managing multiple client installations\u003Cbr \u002F>\n– Enterprise sites requiring advanced controls\u003Cbr \u002F>\n– Gravity Forms and WooCommerce users\u003C\u002Fp>\n\u003Cp>\u003Ca href=\"https:\u002F\u002Ffullworksplugins.com\u002Fproducts\u002Fanti-spam\u002F\" rel=\"nofollow ugc\">Start Your Free 30-Day Pro Trial\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>Try Pro features risk-free for 30 days. A card is required to start, but you won’t be charged if you cancel before the trial ends. No pressure, no hassle.\u003C\u002Fp>\n","Block spam on Contact Form 7, WPForms & comments. No API key. GDPR compliant. Free for commercial use. No configuration needed.",1000,63569,12,"2026-06-24T16:43:00.000Z","5.3.0",[51,52,19,22,53],"anti-spam","cf7","wpforms","https:\u002F\u002Ffullworksplugins.com\u002Fproducts\u002Fanti-spam\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Ffullworks-anti-spam.3.0.1.zip",{"slug":57,"name":58,"version":59,"author":60,"author_profile":61,"description":62,"short_description":63,"active_installs":64,"downloaded":65,"rating":25,"num_ratings":66,"last_updated":67,"tested_up_to":14,"requires_at_least":68,"requires_php":16,"tags":69,"homepage":72,"download_link":73,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"honeypot-guard-silent-anti-spam","Honeypot Guard – Silent Anti-Spam","2.4.4","MDigital","https:\u002F\u002Fprofiles.wordpress.org\u002Fmantasdigital\u002F","\u003Cp>\u003Cstrong>Honeypot Guard\u003C\u002Fstrong> is a powerful, privacy-focused anti-spam solution that protects your WordPress forms without annoying your visitors with CAPTCHAs. Using invisible detection techniques, it blocks spam bots while maintaining a seamless user experience.\u003C\u002Fp>\n\u003Ch4>Why Choose Honeypot Guard?\u003C\u002Fh4>\n\u003Cp>Unlike CAPTCHA-based solutions that frustrate users and hurt conversions (studies show CAPTCHAs reduce form submissions by 10-40%), Honeypot Guard provides \u003Cstrong>superior spam protection\u003C\u002Fstrong> with \u003Cstrong>zero user friction\u003C\u002Fstrong>.\u003C\u002Fp>\n\u003Ch4>How It Works\u003C\u002Fh4>\n\u003Cp>Honeypot Guard uses multiple layers of intelligent detection to catch spam automatically:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Invisible Honeypot Fields\u003C\u002Fstrong> – Hidden fields that real users never see, but bots fill out automatically\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dynamic Field Rotation\u003C\u002Fstrong> – Constantly changing field names make it harder for sophisticated bots to adapt\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Timestamp Validation\u003C\u002Fstrong> – Detects instant submissions (bots can’t read like humans)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Intelligent Gibberish Detection\u003C\u002Fstrong> – Catches keyboard mashing and random text patterns\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Advanced Heuristic Analysis\u003C\u002Fstrong> – Pattern-based detection of common spam characteristics\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Character Script Filtering\u003C\u002Fstrong> – Optionally block submissions containing specific character scripts (Cyrillic, Chinese, etc.)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Dotted Email Detection\u003C\u002Fstrong> – Catches spammers using excessive dots to generate infinite email addresses (e.g. k..a.ir.vi.n@gmail.com)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cookie Verification\u003C\u002Fstrong> – Proves JavaScript execution in a real browser environment\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Zero User Friction\u003C\u002Fstrong> – Completely invisible protection, no annoying puzzles\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy-Focused\u003C\u002Fstrong> – All processing on your server, no third-party tracking by default\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Granular Blacklisting\u003C\u002Fstrong> – Block by email, domain, IP address, or keywords\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rate Limiting\u003C\u002Fstrong> – Prevent spam floods with configurable submission limits\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Detailed Spam Logs\u003C\u002Fstrong> – View blocked submissions with one-click IP blocking\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multi-Language Admin\u003C\u002Fstrong> – Available in 9 languages (English, German, Spanish, Italian, Lithuanian, Swedish, Polish, Estonian, Spanish-Mexico)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>GDPR Compliant\u003C\u002Fstrong> – No data sent to external services (unless you enable optional AI detection)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Works Automatically\u003C\u002Fstrong> – Integrates seamlessly with popular form plugins\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Supported Form Plugins\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>Contact Form 7\u003C\u002Fli>\n\u003Cli>WPForms\u003C\u002Fli>\n\u003Cli>Gravity Forms\u003C\u002Fli>\n\u003Cli>Ninja Forms\u003C\u002Fli>\n\u003Cli>Formidable Forms\u003C\u002Fli>\n\u003Cli>WordPress Registration Forms\u003C\u002Fli>\n\u003Cli>WordPress Comments\u003C\u002Fli>\n\u003Cli>WooCommerce Checkout & Registration\u003C\u002Fli>\n\u003Cli>bbPress Forums\u003C\u002Fli>\n\u003Cli>Any HTML form with minimal configuration\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Advanced Protection Options\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Cloudflare Turnstile\u003C\u002Fstrong> (Optional) – Invisible CAPTCHA that catches headless browsers, Tor\u002FVPN bots, and bot farms. Free up to 1M validations\u002Fmonth. Fails open — never blocks real users if Cloudflare is down.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>AI-Powered Gibberish Detection\u003C\u002Fstrong> (Optional) – Use OpenAI or Anthropic APIs for advanced content analysis\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Meta Pixel Protection\u003C\u002Fstrong> – Block form submission tracking until verification\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Custom Honeypot Field Names\u003C\u002Fstrong> – Define your own field names for added security\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Whitelist Trusted Users\u003C\u002Fstrong> – Bypass checks for logged-in users or specific IPs\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Privacy & Performance\u003C\u002Fh4>\n\u003Cp>Honeypot Guard is designed with privacy and performance in mind:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Lightweight\u003C\u002Fstrong> – Adds virtually zero latency to your site\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No External Calls\u003C\u002Fstrong> – Basic protection requires no API calls\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cache Compatible\u003C\u002Fstrong> – Works with WP Super Cache, W3 Total Cache, WP Rocket, LiteSpeed, and more\u003C\u002Fli>\n\u003Cli>\u003Cstrong>No Cookies Required\u003C\u002Fstrong> – Core functionality works without cookies (optional cookie verification available)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Professional Support\u003C\u002Fh4>\n\u003Cp>Need help? Visit \u003Ca href=\"https:\u002F\u002Fwww.mantasdigital.com\u002Fhoneypot-guard\u002F\" rel=\"nofollow ugc\">mantasdigital.com\u002Fhoneypot-guard\u003C\u002Fa> for documentation and support.\u003C\u002Fp>\n\u003Ch3>Privacy Policy\u003C\u002Fh3>\n\u003Cp>Honeypot Guard collects and stores:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>IP addresses of form submissions (for spam detection and blocking)\u003C\u002Fli>\n\u003Cli>Form submission data flagged as spam (for review and pattern detection)\u003C\u002Fli>\n\u003Cli>Timestamps of submissions (for rate limiting)\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>This data is stored in your WordPress database and is \u003Cstrong>never sent to external services\u003C\u002Fstrong> unless you enable optional AI-powered detection.\u003C\u002Fp>\n\u003Cp>You can configure automatic deletion of spam logs in Settings > Honeypot Guard.\u003C\u002Fp>\n\u003Ch3>External Services\u003C\u002Fh3>\n\u003Cp>This plugin can optionally connect to external AI services for advanced gibberish detection. These services are \u003Cstrong>disabled by default\u003C\u002Fstrong> and must be explicitly enabled by the administrator.\u003C\u002Fp>\n\u003Ch4>OpenAI API (Optional)\u003C\u002Fh4>\n\u003Cp>When AI gibberish detection is enabled and configured with an OpenAI API key:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>What it does:\u003C\u002Fstrong> Analyzes suspicious form field content to detect nonsensical or spam text\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Only the specific text field being analyzed (not the entire form submission)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When sent:\u003C\u002Fstrong> Only when a submission is flagged as potentially suspicious and AI detection is enabled\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Service provider:\u003C\u002Fstrong> OpenAI, L.L.C.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of use:\u003C\u002Fstrong> https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fterms-of-use\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy policy:\u003C\u002Fstrong> https:\u002F\u002Fopenai.com\u002Fpolicies\u002Fprivacy-policy\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Anthropic API (Optional)\u003C\u002Fh4>\n\u003Cp>When AI gibberish detection is enabled and configured with an Anthropic API key:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>What it does:\u003C\u002Fstrong> Analyzes suspicious form field content to detect nonsensical or spam text\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> Only the specific text field being analyzed (not the entire form submission)\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When sent:\u003C\u002Fstrong> Only when a submission is flagged as potentially suspicious and AI detection is enabled\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Service provider:\u003C\u002Fstrong> Anthropic, PBC\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of use:\u003C\u002Fstrong> https:\u002F\u002Fwww.anthropic.com\u002Flegal\u002Fconsumer-terms\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy policy:\u003C\u002Fstrong> https:\u002F\u002Fwww.anthropic.com\u002Flegal\u002Fprivacy\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch4>Cloudflare Turnstile (Optional)\u003C\u002Fh4>\n\u003Cp>When Turnstile is enabled and configured with site\u002Fsecret keys:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>What it does:\u003C\u002Fstrong> Verifies that form submissions come from real browsers, not headless bots\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Data sent:\u003C\u002Fstrong> A challenge token and the visitor’s IP address\u003C\u002Fli>\n\u003Cli>\u003Cstrong>When sent:\u003C\u002Fstrong> On every form submission when Turnstile is enabled\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Service provider:\u003C\u002Fstrong> Cloudflare, Inc.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Terms of use:\u003C\u002Fstrong> https:\u002F\u002Fwww.cloudflare.com\u002Fwebsite-terms\u002F\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Privacy policy:\u003C\u002Fstrong> https:\u002F\u002Fwww.cloudflare.com\u002Fprivacypolicy\u002F\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Fail-open:\u003C\u002Fstrong> If Cloudflare is unreachable, no penalty is applied — real users are never blocked\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Important:\u003C\u002Fstrong> These services are entirely optional. Honeypot Guard provides effective spam protection without any external services using its built-in detection methods.\u003C\u002Fp>\n\u003Ch3>Additional Info\u003C\u002Fh3>\n\u003Cul>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.mantasdigital.com\u002Fhoneypot-guard\u002F\" rel=\"nofollow ugc\">Plugin Website\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.mantasdigital.com\u002Fhoneypot-guard\u002F\" rel=\"nofollow ugc\">Documentation\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fwww.mantasdigital.com\u002F\" rel=\"nofollow ugc\">Support\u003C\u002Fa>\u003C\u002Fli>\n\u003Cli>\u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fmantasdigital\u002Fhoneypot-guard\" rel=\"nofollow ugc\">GitHub Repository\u003C\u002Fa>\u003C\u002Fli>\n\u003C\u002Ful>\n","Anti-spam protection for forms, signups, and comments using advanced honeypot techniques. No CAPTCHAs, no user friction.",200,1464,1,"2026-07-20T21:04:00.000Z","5.0",[18,19,70,71,22],"honeypot","security","https:\u002F\u002Fwww.mantasdigital.com\u002Fhoneypot-guard\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fhoneypot-guard-silent-anti-spam.2.4.4.zip",{"slug":75,"name":76,"version":77,"author":78,"author_profile":79,"description":80,"short_description":81,"active_installs":82,"downloaded":83,"rating":11,"num_ratings":11,"last_updated":84,"tested_up_to":14,"requires_at_least":85,"requires_php":86,"tags":87,"homepage":88,"download_link":89,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"berestov-anti-spam-for-contact-form-7","Berestov Anti-spam for Contact Form 7","1.0.35","andreyberestov","https:\u002F\u002Fprofiles.wordpress.org\u002Fandreyberestov\u002F","\u003Cp>Berestov Anti-spam for Contact Form 7 adds a lightweight, privacy-friendly anti-spam layer without modifying Contact Form 7 core files.\u003C\u002Fp>\n\u003Cp>Features:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Layered anti-spam protection designed for real-world form traffic.\u003C\u002Fli>\n\u003Cli>Fresh protection data can be refreshed on rendered forms, which helps on cached pages.\u003C\u002Fli>\n\u003Cli>Front-end assets load only where protected forms are present.\u003C\u002Fli>\n\u003Cli>Optional diagnostic logging to the plugin log file.\u003C\u002Fli>\n\u003Cli>Built-in statistics for allowed and blocked requests.\u003C\u002Fli>\n\u003Cli>Optional WordPress comment protection module.\u003C\u002Fli>\n\u003C\u002Ful>\n","Protect Contact Form 7 and optionally WordPress comments with privacy-friendly anti-spam protection.",10,139,"2026-05-21T07:17:00.000Z","6.2","7.0",[51,18,52,19,22],"https:\u002F\u002Fwordpress.org\u002Fplugins\u002Fberestov-anti-spam-for-contact-form-7\u002F","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fberestov-anti-spam-for-contact-form-7.1.0.35.zip",{"slug":91,"name":92,"version":93,"author":94,"author_profile":95,"description":96,"short_description":97,"active_installs":82,"downloaded":98,"rating":11,"num_ratings":11,"last_updated":99,"tested_up_to":14,"requires_at_least":100,"requires_php":16,"tags":101,"homepage":102,"download_link":103,"security_score":25,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"samurai-honeypot-for-forms","Samurai Honeypot for Forms","1.1.6","Team beta version","https:\u002F\u002Fprofiles.wordpress.org\u002Fsatoshin99\u002F","\u003Cp>\u003Cstrong>Note: This plugin requires HTTPS to function (due to Web Crypto API usage).\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>The Story: The Forging of the Ultimate Defense\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This project began with a simple goal: to create a lightweight honeypot trap to catch basic bots. But during development, we faced a harsh reality: \u003Cstrong>Simple traps are obsolete.\u003C\u002Fstrong> Modern AI bots and headless browsers can easily step over traditional defenses. A basic trap was no longer enough; we needed a fortress.\u003C\u002Fp>\n\u003Cp>So, we forged a completely new architecture. We added Proof of Work, Behavioral Analysis, and Rate Limiting. What started as a simple honeypot evolved into a \u003Cstrong>15-layer invisible firewall\u003C\u002Fstrong>. Like a samurai’s blade, it operates with absolute precision—completely invisible to your real customers, yet ruthlessly executing a “Silent Kill” on spam bots before they ever reach your inbox or database.\u003C\u002Fp>\n\u003Cp>Samurai Honeypot protects every Contact Form 7 and WPForms form with fifteen independent defense layers.\u003Cbr \u002F>\nEach layer contributes a score, and blocked submissions are handled by a \u003Cstrong>3-Tier Triage System\u003C\u002Fstrong>:\u003C\u002Fp>\n\u003Ch4>3-Tier Triage System\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>Tier 1 (Pass):\u003C\u002Fstrong> Score below the threshold (default 50) — email is sent normally.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Tier 2 (Quarantine):\u003C\u002Fstrong> Score between the threshold and 99 — email is silently suppressed (Silent Kill) and the submission is saved to the built-in \u003Cstrong>Quarantine Log\u003C\u002Fstrong> for admin review.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Tier 3 (Drop \u002F Instant Kill):\u003C\u002Fstrong> Score of 100 or higher — email is silently suppressed and the submission is \u003Cstrong>permanently dropped without logging\u003C\u002Fstrong>. This protects your database from bloat during DDoS or mass bot attacks.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Cp>\u003Cstrong>Warning — False Positives:\u003C\u002Fstrong> Depending on your environment, legitimate emails may occasionally be flagged as spam. Enterprise proxies, strict corporate firewalls, outdated browsers, VPNs, and unusual network configurations can trigger detection layers. \u003Cstrong>You MUST check the Quarantine Log periodically\u003C\u002Fstrong> to identify and recover any false positives. The plugin cannot distinguish all edge cases automatically.\u003C\u002Fp>\n\u003Ch4>Defense Layers\u003C\u002Fh4>\n\u003Col>\n\u003Cli>\u003Cstrong>JS Injection Gate\u003C\u002Fstrong> — Blocks bots that cannot execute JavaScript. Tokens are fetched via REST API for full page-cache compatibility.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Polymorphic Honeypot\u003C\u002Fstrong> — Decoy field name is cryptographically derived per token (not exposed in the API response), hidden from humans via CSS.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Token Signature\u003C\u002Fstrong> — HMAC-SHA256 signed stateless token with IP and Form ID binding.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Time Trap\u003C\u002Fstrong> — Detects impossibly fast submissions. Browser autofill is automatically exempt.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Proof of Work\u003C\u002Fstrong> — SHA-256 computational challenge via Web Crypto API that forces CPU cost on bots.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Behavioral Entropy\u003C\u002Fstrong> — Hash-verified human-like event counters: mouse, keyboard, touch, scroll. Uniqueness tracking detects script reuse.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Headless UA Block\u003C\u002Fstrong> — Server-side User-Agent check instantly blocks known headless browsers and automated tools (Headless Chrome, Puppeteer, PhantomJS, Selenium, Playwright, Nightmare, Electron). Toggleable in settings for E2E testing compatibility.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Headless Detection\u003C\u002Fstrong> — Detects automated browser environments (navigator.webdriver, plugin count, window.chrome, language count).\u003C\u002Fli>\n\u003Cli>\u003Cstrong>UA Age Detection\u003C\u002Fstrong> — Scores based on Chrome version age. 2+ years: +10, 3+ years: +20, 4+ years: +30. Bots often use hardcoded old User-Agent strings that never update.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Rate Limiting\u003C\u002Fstrong> — Per-IP submission rate limiting with IPv6 \u002F64 normalization.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Replay Protection\u003C\u002Fstrong> — Atomic token consumption (INSERT IGNORE) + TTL expiry enforcement.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>IP Blacklist\u003C\u002Fstrong> — Manually configured IP\u002FCIDR blacklist for known bad actors.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content: URL Limit\u003C\u002Fstrong> — Flags messages containing more URLs than the configured threshold.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content: BBCode\u003C\u002Fstrong> — Detects BBCode link syntax (\u003Ccode>[url=...]\u003C\u002Fcode>) that never appears in legitimate form submissions.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content: Denylist\u003C\u002Fstrong> — Matches against WordPress Disallowed Comment Keys (Settings > Discussion).\u003C\u002Fli>\n\u003C\u002Fol>\n\u003Ch4>Key Features\u003C\u002Fh4>\n\u003Cul>\n\u003Cli>\u003Cstrong>3-Tier Triage\u003C\u002Fstrong> — Pass, Quarantine (with local log), or Drop. No legitimate message is lost without a trace — quarantined submissions are saved for admin review.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Built-in Quarantine Log\u003C\u002Fstrong> — Blocked Tier 2 submissions are saved to a local database table (up to 1,000 entries, FIFO). View date, score, trigger reasons, and full form data from the admin panel. No external plugin required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>DDoS-Resilient Tier 3 Drop\u003C\u002Fstrong> — Submissions scoring 100+ are immediately dropped from memory without any database write. This prevents database exhaustion during mass bot attacks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>GDPR Compliant\u003C\u002Fstrong> — No cookies, no external service calls, no plugin-specific PII stored. IP addresses are one-way hashed with a site-specific salt before any storage — raw IPs never touch the database. No consent banner required.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Stateless Tokens\u003C\u002Fstrong> — No database writes for token generation; prevents DoS via DB bloat.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Zero Trust Client\u003C\u002Fstrong> — All client-submitted data is verified server-side with HMAC signatures and hash integrity checks.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Zero Configuration\u003C\u002Fstrong> — Activate and all Contact Form 7 \u002F WPForms forms are protected automatically.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Cache Compatible\u003C\u002Fstrong> — Tokens are fetched via REST API, so page caching works fine.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Multiple Forms\u003C\u002Fstrong> — Works correctly with multiple forms on the same page.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>IP Whitelist \u002F Blacklist\u003C\u002Fstrong> — Whitelist trusted IPs or CIDR ranges to skip all scoring. Blacklist known bad IPs to add +100 score instantly. Optionally whitelist all logged-in WordPress users.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Headless Browser Blocking\u003C\u002Fstrong> — Server-side User-Agent check instantly blocks Headless Chrome, Puppeteer, Selenium, and other automated browsers (+100 score). Enabled by default; can be toggled off for E2E testing.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Content Rules\u003C\u002Fstrong> — Detect spam patterns in form content: excessive URLs, BBCode link syntax, and WordPress Disallowed Comment Keys matching.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Trusted Proxy Support\u003C\u002Fstrong> — Optional mode for Cloudflare and reverse proxy environments with IP range validation.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lightweight\u003C\u002Fstrong> — Three PHP files, no external dependencies, no jQuery.\u003C\u002Fli>\n\u003C\u002Ful>\n","Invisible 15-layer anti-spam for Contact Form 7 & WPForms. Score-based 3-Tier Triage silently blocks bots — no CAPTCHA, no user friction.",599,"2026-07-15T10:12:00.000Z","5.9",[18,19,70,21,53],"","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Fsamurai-honeypot-for-forms.1.1.6.zip",{"slug":105,"name":106,"version":107,"author":108,"author_profile":109,"description":110,"short_description":111,"active_installs":11,"downloaded":112,"rating":11,"num_ratings":11,"last_updated":113,"tested_up_to":114,"requires_at_least":68,"requires_php":115,"tags":116,"homepage":102,"download_link":118,"security_score":119,"vuln_count":11,"unpatched_count":11,"last_vuln_date":26,"fetched_at":27},"inverted-checkbox-antispam","Inverted Checkbox Antispam","1.0","Yevhen Horbyshyn","https:\u002F\u002Fprofiles.wordpress.org\u002Fhorbiq\u002F","\u003Cp>This plugin adds a hidden “inverted” checkbox to your forms to prevent bots from submitting them.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>Adds support for Contact Form 7 via shortcode \u003Ccode>[ica_checkbox]\u003C\u002Fcode>\u003C\u002Fli>\n\u003Cli>Adds JavaScript-based hidden checkbox to regular forms in the footer\u003C\u002Fli>\n\u003Cli>Blocks form submission if the checkbox is unchecked or missing (typical behavior for bots)\u003C\u002Fli>\n\u003C\u002Ful>\n","Simple spam protection using an inverted checkbox. Compatible with Contact Form 7 and custom HTML forms.",1349,"2025-05-14T17:25:00.000Z","6.8.6","7.2",[18,117,19,22],"checkbox","https:\u002F\u002Fdownloads.wordpress.org\u002Fplugin\u002Finverted-checkbox-antispam.1.0.0.zip",92,{"error":121,"url":122,"statusCode":123,"statusMessage":124,"message":124},true,"http:\u002F\u002Flocalhost\u002Fapi\u002Fplugins\u002Fneutrope-quiet-shield\u002Fbundle",404,"no bundle for this plugin yet",{"slug":4,"current_version":6,"total_versions":66,"versions":126},[127],{"version":6,"download_url":24,"svn_tag_url":128,"released_at":26,"has_diff":129,"diff_files_changed":130,"diff_lines":26,"trac_diff_url":26,"vulnerabilities":131,"is_current":121},"https:\u002F\u002Fplugins.svn.wordpress.org\u002Fneutrope-quiet-shield\u002Ftags\u002F0.1.2\u002F",false,[],[]]