
Spam Email Domain Exclusion for CF7 Security & Risk Analysis
wordpress.org/plugins/spam-email-domain-exclusion-cf7Spam Email Domain Exclusion for CF7 provides a seamless solution to block submissions from specific email domains.
Is Spam Email Domain Exclusion for CF7 Safe to Use in 2026?
Generally Safe
Score 100/100Spam Email Domain Exclusion for CF7 has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "spam-email-domain-exclusion-cf7" plugin v1.0.0 demonstrates a generally strong security posture based on the provided static analysis. The absence of any detected dangerous functions, file operations, or external HTTP requests is a positive sign. Crucially, all SQL queries utilize prepared statements, and the output escaping is at a very high percentage (96%), significantly reducing the risk of cross-site scripting (XSS) vulnerabilities. The presence of a nonce check and a capability check further indicates an effort to implement basic security measures.
There are no reported vulnerabilities in the plugin's history, and the taint analysis revealed no unsanitized paths, suggesting that potentially malicious data is not being processed in a dangerous manner. The limited attack surface, with zero AJAX handlers, REST API routes, shortcodes, or cron events, also contributes to a smaller potential footprint for attackers. The plugin appears to be well-written with respect to common web vulnerabilities.
While the overall security is commendable, it's important to note that a score of 100 is rarely achieved, and the analysis does not cover all possible security vectors. However, based solely on the data provided, this plugin presents a low-risk profile.
Spam Email Domain Exclusion for CF7 Security Vulnerabilities
Spam Email Domain Exclusion for CF7 Code Analysis
Output Escaping
Spam Email Domain Exclusion for CF7 Attack Surface
WordPress Hooks 7
Maintenance & Trust
Spam Email Domain Exclusion for CF7 Maintenance & Trust
Maintenance Signals
Community Trust
Spam Email Domain Exclusion for CF7 Alternatives
Email Validator for Contact Form 7
email-validator-for-contact-form-7
Email validation for Contact Form 7. Reduce registration spam with invalid email, block disposable and block free email.
OTP by Email for Contact Form 7
otp-by-email
A small Contact Form 7 extension plugin to enable email confirmation by unique links sent to the email inbox.
MTX Email DNS Validator for Contact Form 7
mtx-email-dns-validation-for-cf7
Advanced email validation for Contact Form 7 using DNS/MX records and SMTP verification to prevent invalid email submissions.
Contact Form 7
contact-form-7
Just another contact form plugin. Simple but flexible.
Akismet Anti-spam: Spam Protection
akismet
The best anti-spam protection to block spam comments and spam in a contact form. The most trusted antispam solution for WordPress and WooCommerce.
Spam Email Domain Exclusion for CF7 Developer Profile
1 plugin · 50 total installs
How We Detect Spam Email Domain Exclusion for CF7
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
HTML / DOM Fingerprints
spam-email-excluded-domains-cf7data-config-field