
Без шльокавица Security & Risk Analysis
wordpress.org/plugins/noshlyokНе позволява изпращането на коментари без поне един кирилишки символ.
Is Без шльокавица Safe to Use in 2026?
Generally Safe
Score 85/100Без шльокавица has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The plugin 'noshlyok' v0.06 exhibits a generally strong security posture based on the provided static analysis. The absence of AJAX handlers, REST API routes, shortcodes, cron events, dangerous functions, raw SQL queries, file operations, external HTTP requests, and vulnerability history all point to a well-developed and secure piece of code. The developers appear to be following good practices by avoiding common attack vectors and utilizing prepared statements for any potential database interactions. However, a significant concern arises from the output escaping. With 100% of outputs not being properly escaped, this plugin presents a clear risk of Cross-Site Scripting (XSS) vulnerabilities. The lack of nonce and capability checks, while not directly posing an immediate threat given the zero entry points, means that if any entry points were introduced in future versions without proper checks, the plugin would be vulnerable.
While the vulnerability history is clean, indicating a lack of past issues, this does not negate the current risk presented by unescaped output. The overall security is good in terms of avoiding known vulnerabilities and complex code paths, but the unescaped output is a glaring weakness that could be exploited. It's crucial for the developers to address the output escaping issue promptly to mitigate the risk of XSS attacks. The absence of other issues is commendable, but the identified output escaping vulnerability requires immediate attention.
Key Concerns
- 100% of outputs not properly escaped
- No nonce checks on entry points
- No capability checks on entry points
Без шльокавица Security Vulnerabilities
Без шльокавица Code Analysis
Output Escaping
Без шльокавица Attack Surface
WordPress Hooks 6
Maintenance & Trust
Без шльокавица Maintenance & Trust
Maintenance Signals
Community Trust
Без шльокавица Alternatives
Akismet Anti-spam: Spam Protection
akismet
The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.
Disable Comments – Remove Comments & Stop Spam [Multi-Site Support]
disable-comments
Allows administrators to globally disable comments on their site. Comments can be disabled according to post type. Multisite friendly.
Antispam Bee
antispam-bee
Sophisticated antispam plugin for effective daily comment and trackback spam-fighting. Built with data protection and privacy in mind.
Spam protection, Honeypot, Anti-Spam by CleanTalk
cleantalk-spam-protect
Blocks spam comments, fake users, contact form spam and more. No impact on SEO. Privacy focused. CAPTCHA free, premium Antispam plugin.
Captcha Code
captcha-code-authentication
GDPR compatible captcha anti-spam protection for login form, comments form, registration form & lost password form. Eliminate spam with captcha.
Без шльокавица Developer Profile
6 plugins · 1K total installs
How We Detect Без шльокавица
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
dbx-boxdbx-handledbx-contentid="cyr"id="allow_shlyok_check"