WPIntell

comment-form-csrf-protection

Comment Form CSRF Protection

Prevent Cross-Site Request Forgery attacks on your comments form.

500
15.7K
5.0
0
1
2

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

37 / 72 rows with source links

51.4% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

35 rows with no attached evidence

0 rows have source counts but still need direct links.

Download Momentum

180 days
49 73 -32.9% 420

Source Evidence

Open evidence explorer
praise review · high severity · relevance 0.66
Very useful plugin!

Very useful plugin!: users show security, bugs, support pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Our website was “hacked” as part of the Bug Bounty program.
complaint support · medium severity · relevance 0.81
Compatibility with caches

Compatibility with caches: users show compatibility, migration, setup pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Compatibility with caches It seems it is not compatible with cache plugins, since the page is cached for more than the life time of the “protection”.
mixed support · medium severity · relevance 0.61
How to apply the CSRF token for contact forms and search box

How to apply the CSRF token for contact forms and search box: users show bugs pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
How to apply the CSRF token for contact forms and search box Thanks for the nice plugin.
praise review · medium severity · relevance 0.5
Excellent plugin

Excellent plugin: users show bugs, support pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Excellent plugin I have inspected the plugin source.

Competitor Context

16 shown
Subscribe to Comments weak incumbent · intel 79.5 · weakness 70.9
weak incumbent
stale update history below-average rating compatibility bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: marketing teams, agencies, and lead-generation site owners · Wedge: monitor email submissions, notification delivery, spam, and CRM handoffs
Disqus Comment System weak incumbent · intel 79.0 · weakness 67.2
weak incumbent
below-average rating 46 collected complaint signal(s) missing feature bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: marketing teams, agencies, and lead-generation site owners · Wedge: monitor email submissions, notification delivery, spam, and CRM handoffs
Native Emoji praise owner · intel 76.6 · weakness 68.9
praise owner
stale update history below-average rating bugs support 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site builders and agencies · Wedge: detect icons layout regressions, widget breakage, and client-visible update issues
AnyComment praise owner · intel 76.3 · weakness 67.7
praise owner
1 unresolved support thread(s) stale update history compatibility bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: support-heavy site owners, agencies, and community operators · Wedge: triage repeated comment threads, failed replies, knowledge gaps, and escalation workload
Comments – wpDiscuz weak incumbent · intel 75.7 · weakness 61.5
weak incumbent
4 unresolved support thread(s) 15 collected complaint signal(s) bugs support 2 source links Proof Blocked Evidence linked to opportunity
Buyer: support-heavy site owners, agencies, and community operators · Wedge: triage repeated comment threads, failed replies, knowledge gaps, and escalation workload
Cookies for Comments weak incumbent · intel 75.7 · weakness 66.4
weak incumbent
stale update history 24 collected complaint signal(s) security compatibility 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test spam lockouts, bot/spam defenses, risky access changes, and incident alerts
Disable Comments weak incumbent · intel 70.8 · weakness 55.0
weak incumbent
below-average rating 9 collected complaint signal(s) missing feature bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: support-heavy site owners, agencies, and community operators · Wedge: triage repeated comment threads, failed replies, knowledge gaps, and escalation workload
Delete Pending Comments weak incumbent · intel 70.1 · weakness 56.4
weak incumbent
stale update history 5 collected complaint signal(s) bugs missing feature 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test spam lockouts, bot/spam defenses, risky access changes, and incident alerts

Repeated Themes

0 shown

No repeated plugin-level themes have been generated yet.

Collected Signals

4 shown from 4 collected
mixed How to apply the CSRF token for contact forms and search box support · 2021-06-23T09:32:30+00:00 · medium severity · comments

How to apply the CSRF token for contact forms and search box: users show bugs pain that may indicate a product gap.

Evidence: How to apply the CSRF token for contact forms and search box Thanks for the nice plugin.
bugs reliable form support triage and conversation operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
praise Excellent plugin (5 stars) review · 2021-06-23T09:20:34+00:00 · medium severity · comments

Excellent plugin: users show bugs, support pain that may indicate a product gap.

Evidence: Excellent plugin I have inspected the plugin source.
bugs support quality form support triage and conversation operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint Compatibility with caches support · 2019-11-06T09:20:10+00:00 · medium severity · comments

Compatibility with caches: users show compatibility, migration, setup pain that may indicate a product gap.

Evidence: Compatibility with caches It seems it is not compatible with cache plugins, since the page is cached for more than the life time of the “protection”.
compatibility migration setup value support triage and conversation operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
praise Very useful plugin! (5 stars) review · 2019-10-23T06:28:17+00:00 · high severity · comments

Very useful plugin!: users show security, bugs, support pain that may indicate a product gap.

Evidence: Our website was “hacked” as part of the Bug Bounty program.
security bugs support support triage and conversation operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts