GB Anti-Spam for Contact Form 7

Changelog

1.1.0

  • Replaced JS-based token mechanism with secure WordPress nonce validation (wp_create_nonce / wp_verify_nonce)
  • Removed insecure client-side hash-based token generation
  • Added human interaction signal detection (mouse, keyboard, touch events)
  • Improved fingerprinting method for better bot anomaly detection
  • Added universal payload inspection for SQL injection, XSS, and command injection patterns across all form fields
  • Improved rate limiting logic with stricter thresholds per IP
  • Enhanced honeypot detection reliability across all CF7 forms

1.0.5

  • Improved validation scoring system for spam detection
  • Added additional heuristic checks for automated bot submissions
  • Optimized transient-based rate limiting mechanism

1.0.0

  • Initial release
  • Basic honeypot protection
  • Timing-based submission validation
  • Lightweight fingerprint detection

Plugin Website
Visit website

Author
gregbialowas
Version:
1.1.0
Last Updated
June 10, 2026
Requires
WordPress 5.8
Tested Up To
WordPress 7.0
Requires PHP
7.0

Share Post

Join our newsletter.

Get insights into what’s happening at ChangelogWP right in your inbox. We don’t believe in spam.