This is an info Alert.
xpay
  • Product
    • Become Agent-Ready
      • Merchants
        Agentic Commerce — list your store across ChatGPT, Gemini, Claude & Perplexity
      • Publishers
        Monetize your content when AI agents read, cite, or train on it
      • SaaS Companies
        Treat AI agents as first-class customers with agent-priced checkout
    • Monetize
      • Monetize MCP Server
        Charge per call on any MCP server in 2 minutes
      • Monetize AI Agents
        Turn n8n, Zapier, Activepieces workflows into revenue
  • Resources
    • xpay Ecosystem
      • xpay✦ Tools
        1,000+ pay-per-use tools for your AI agents
      • Agent-Ready SaaS Index
        25,481 SaaS scored on agent-buyability
      • SaaS Pricing Database
        Pricing pages indexed across 1,000+ categories
      • Shopify Apps Directory
        Every Shopify app, with its full review history
      • WooCommerce Plugins Directory
        Every WooCommerce plugin, scored on how well it is maintained
      • GitHub
        Open source repositories
    • Agent Building
      • Agent Frameworks
        AI frameworks for building multi-agent systems
      • x402 Integration
        AI frameworks with x402 payment integration
      • Networks
        Blockchain networks supporting x402
    • Company
      • About xpay✦
        Our mission, products, and protocols
      • Blog
        Latest insights and updates
      • Docs
        Complete xpay documentation
  • Pricing
  • Blog
  • Docs
Get Started
  1. xpay✦ Commerce

  2. Directory

  3. WooCommerce plugins

  4. Codenitive CAPTCHA Security

Codenitive CAPTCHA Security

Add Google reCAPTCHA v2, reCAPTCHA v3 and Cloudflare Turnstile protection to WordPress, WooCommerce and Contact Form 7 forms.

10+ active installsFree on WordPress.org
View on WordPress.orgSupport forum
Will this break my store?

What the WordPress.org registry says about keeping Codenitive CAPTCHA Security running.

WordPress compatibility
Tested to 7.0.4 — 1 branch behind 7.1
Tested against the WordPress branch in use today.
Last updated
3 days ago
At least 8.3 releases a year since launch. WordPress.org only lists versions still available for download, so the real number may be higher.
Requires PHP
7.4
Your host must be running at least this version.
Requires WordPress
6.4
Contributors
1
A single maintainer. Worth knowing if the plugin is load-bearing for your store.

10+ active installsWordPress.org reports installs in bands, not exact counts.
Maintenance & trust

Scored on how Codenitive CAPTCHA Security is looked after — not on how many stores run it.

Well maintained
Not enough public feedback to put a confident number on this one. Little public feedback — score rests mostly on release activity. What we can see is below.

Maintenance
35 / 35
Updated 3 days ago.
WordPress compatibility
20 / 20
Tested to WP 7.0.4 (current).
Support responsiveness
Not enough data
Only 0 support thread(s) — not enough to judge.
Merchant satisfaction
Not enough data
No ratings yet.
Listing transparency
10 / 10
Provides: screenshots, description, homepage
2 of 5 measures had too little evidence to score. They are left out of the total rather than counted as zero — otherwise a plugin would be marked down for being small rather than for being poorly kept.Measured 2026-09-13 from the WordPress.org plugin registry.
Ratings

No one has rated this plugin on WordPress.org yet. That is a statement about the ratings page, not about the plugin — plenty of well-kept plugins never collect them.

Codenitive CAPTCHA Security helps protect WordPress, WooCommerce and Contact Form 7 forms from spam, bots and automated abuse.

Choose a single CAPTCHA provider from the plugin settings:

  • Google reCAPTCHA v2 Checkbox
  • Google reCAPTCHA v3
  • Cloudflare Turnstile
  • Disabled

Protect forms including:

  • WordPress Login
  • WordPress Registration
  • WordPress Lost Password
  • WordPress Comments
  • WooCommerce Login
  • WooCommerce Registration
  • WooCommerce Checkout
  • WooCommerce Product Reviews
  • Contact Form 7

Google reCAPTCHA v2 supports Light and Dark themes plus Normal and Compact sizes. Cloudflare Turnstile supports Managed, Non-Interactive and Invisible widget modes plus Auto, Light and Dark themes for visible widgets.

Features

  • Google reCAPTCHA v2 Checkbox support
  • Google reCAPTCHA v2 theme and size customization
  • Google reCAPTCHA v3 score-based support
  • Cloudflare Turnstile support
  • Single CAPTCHA provider selection
  • Option to completely disable CAPTCHA protection
  • Cloudflare Turnstile theme customization
  • Cloudflare Turnstile Managed, Non-Interactive and Invisible mode mapping
  • Cloudflare Turnstile appearance customization
  • Cloudflare Turnstile widget size customization
  • WordPress Login, Registration, Lost Password and Comments protection
  • WooCommerce Login, Registration, classic Checkout, Checkout Block and Product Reviews protection
  • Contact Form 7 integration
  • Hide CAPTCHA for logged-in users
  • CAPTCHA verification logs
  • Provider error reporting for failed verification attempts
  • Helps prevent spam, bots and brute-force attacks
  • Easy configuration through the WordPress admin settings panel
  • Compatible with most themes and caching plugins

Usage

After activating the plugin:

  1. Go to Settings → Codenitive CAPTCHA Security.
  2. Select your preferred CAPTCHA provider.
  3. Enter the Site Key and Secret Key for the selected provider.
  4. Configure additional provider settings if required.
  5. Open the Options tab and enable protection for the desired forms.
  6. Save your settings.

To disable CAPTCHA protection completely, select Disabled as the CAPTCHA provider.

Google reCAPTCHA v2 Customization

When Google reCAPTCHA v2 is selected, the checkbox widget supports:

Theme

  • Light (default)
  • Dark

Size

  • Normal (default)
  • Compact

These options apply only to the visible reCAPTCHA v2 checkbox. reCAPTCHA v3 is score-based and has no checkbox theme or size setting.

Cloudflare Turnstile Customization

When Cloudflare Turnstile is selected as the CAPTCHA provider, the following widget customization options are available:

Widget Mode

  • Managed (recommended)
  • Non-Interactive
  • Invisible

The widget mode is bound to the Turnstile Site Key in Cloudflare. Select the same mode in the plugin so it can apply compatible presentation settings. The plugin does not send an unsupported mode value to the browser API.

Theme

  • Auto
  • Light
  • Dark

Appearance

  • Always
  • Execute
  • Interaction-only

Size

  • Normal
  • Compact
  • Flexible

Theme, appearance and size apply to Managed and Non-Interactive widgets. Invisible widgets have no visual footprint, so those display settings are omitted when Invisible mode is selected.

CAPTCHA Verification Logs

The plugin can record failed CAPTCHA verification attempts to help administrators troubleshoot CAPTCHA configuration and verification issues.

Verification logs may include information such as:

  • CAPTCHA provider
  • Protected form or integration
  • Verification result
  • Provider error codes
  • Date and time of the failed verification

Logs are intended for troubleshooting and monitoring CAPTCHA verification failures.

Privacy

This plugin connects to external CAPTCHA services to help prevent spam and automated abuse.

Data is sent to the currently selected CAPTCHA provider when CAPTCHA protection is used on a protected form.

Supported external services:

  • Google reCAPTCHA
  • Cloudflare Turnstile

If CAPTCHA is disabled, the plugin does not load or perform CAPTCHA verification through these providers.

External Services Used

This plugin uses one of the following third-party services depending on the CAPTCHA provider selected by the site administrator.

Google reCAPTCHA v2

  • Purpose: Helps prevent spam and automated abuse during protected form submissions.
  • Data Sent: Browser and interaction information may be sent to Google as part of the CAPTCHA verification process.
  • When Sent: When Google reCAPTCHA is selected and a visitor interacts with a protected form.
  • Service Provider: Google LLC
  • Terms of Service: https://policies.google.com/terms
  • Privacy Policy: https://policies.google.com/privacy

Google reCAPTCHA v3

  • Purpose: Provides score-based protection against spam and automated abuse without displaying a checkbox challenge.
  • Data Sent: Browser, interaction and form-action information may be sent to Google as part of CAPTCHA scoring and verification.
  • When Sent: When Google reCAPTCHA v3 is selected and a visitor submits a protected form.
  • Service Provider: Google LLC
  • Terms of Service: https://policies.google.com/terms
  • Privacy Policy: https://policies.google.com/privacy

Cloudflare Turnstile

  • Purpose: Helps prevent spam and automated abuse on protected forms.
  • Data Sent: Browser, network and other information required by the Turnstile verification service may be sent to Cloudflare.
  • When Sent: When Cloudflare Turnstile is selected and CAPTCHA protection is used on a protected form.
  • Service Provider: Cloudflare, Inc.
  • Terms of Service: https://www.cloudflare.com/website-terms/
  • Privacy Policy: https://www.cloudflare.com/privacypolicy/

If Invisible Turnstile mode is used, review Cloudflare’s Turnstile Privacy Addendum and reference it in your site’s privacy policy as required by Cloudflare:
https://www.cloudflare.com/turnstile-privacy-policy/

Feedback

If you like this plugin, please leave us a 5-star review:
https://wordpress.org/support/plugin/codenitive-captcha/reviews/#new-post

Need help or have a feature request? Use the Support Forum:
https://wordpress.org/support/plugin/codenitive-captcha/

Which CAPTCHA providers are supported?

The plugin currently supports:

  • Google reCAPTCHA v2 Checkbox
  • Google reCAPTCHA v3
  • Cloudflare Turnstile

You can select one provider at a time from the plugin settings.

Can I disable CAPTCHA without disabling the plugin?

Yes. Select Disabled from the CAPTCHA Provider setting. CAPTCHA widgets and verification will not be used while the provider is disabled.

Does this plugin support Cloudflare Turnstile?

Yes. Select Cloudflare Turnstile as your CAPTCHA provider and enter your Turnstile Site Key and Secret Key.

Can I customize the Google reCAPTCHA widget?

Yes. Google reCAPTCHA v2 supports Light and Dark themes and Normal and Compact sizes. reCAPTCHA v3 has no visible checkbox, so these options do not apply to v3.

Can I customize the Cloudflare Turnstile widget?

Yes. You can map the Turnstile widget mode and configure the theme, appearance and widget size from the plugin settings.

Available widget modes:

  • Managed
  • Non-Interactive
  • Invisible

Available themes:

  • Auto
  • Light
  • Dark

Available appearance options:

  • Always
  • Execute
  • Interaction-only

Available sizes:

  • Normal
  • Compact
  • Flexible

What if CAPTCHA does not show?

Make sure:

  • A CAPTCHA provider is selected.
  • Valid Site Key and Secret Key values are configured for the selected provider.
  • The form is enabled in the plugin settings.
  • CAPTCHA is not configured to be hidden for the currently logged-in user.

Does this plugin work with WooCommerce?

Yes. It supports CAPTCHA protection for WooCommerce login, registration, checkout and product review forms.

Does this plugin work with Contact Form 7?

Yes.

  1. Go to Settings → Codenitive CAPTCHA Security.
  2. Select and configure a CAPTCHA provider.
  3. Open the Options tab.
  4. Enable Contact Form 7 protection.
  5. Add the [codenit_recaptcha] shortcode to your Contact Form 7 form.
  6. Save your settings.

The [codenit_recaptcha] shortcode uses the CAPTCHA provider currently selected in the plugin settings.

Can I customize where CAPTCHA appears?

You can enable or disable CAPTCHA protection for supported forms through the plugin settings.

Where can I generate my Google reCAPTCHA Site and Secret Keys?

https://www.google.com/recaptcha/admin/create

Where can I generate Cloudflare Turnstile Site and Secret Keys?

https://dash.cloudflare.com/?to=/:account/turnstile

Categories
Security & spamForms & FAQ
Plugin details
Version1.2.0
Last updated2026-09-10 9:00pm GMT
Added2025-07-03
Requires WordPress6.4
Tested up to7.0.4
Requires PHP7.4

Tags on WordPress.org
captcha
contact form 7
recaptcha
turnstile
woocommerce
Alternatives
Other plugins in the same categories.
SilentShield – Captcha & Anti-Spam for WordPress (CF7, WPForms, Elementor, WooCommerce)
10K+ installs
4.7(21)
Kitgenix CAPTCHA for Cloudflare Turnstile
700+ installs
5.0(6)
Block Emails & Addresses for WooCommerce Checkout
700+ installs
5.0(6)
Checkout Shield for WooCommerce – Stop Fake Orders, Spam Bots & Card Testing
300+ installs
5.0(5)
FraudLabs Pro for WooCommerce
1K+ installs
4.2(18)
Identity Verification for WooCommerce
100+ installs
5.0(12)
xpay

The agent-readiness stack for the AI shopping era — helping merchants, publishers and SaaS companies get discovered, cited and transacted with by ChatGPT, Perplexity, Claude, Gemini and the custom shopping agents underneath them.

CompanyAgentically Inc. (d/b/a xpay✦)1875 Mission St, Ste 103San Francisco, CA 94103, United Stateslegal@xpay.sh · privacy@xpay.sh
or ask your AI app
Company
About xpayAgency PartnersGitHubDiscordllms.txt
DevelopersDocumentationAPI ReferenceSDKs & LibrariesQuickstart GuideOpenAPI Spec
Stay Updated
Occasional product updates and agent-readiness playbooks from xpay (Agentically Inc.) — typically a couple of emails a month. Double opt-in: we email you a link to confirm before sending anything, and every email has one-click unsubscribe.
Social
  • For Publishers
    • News
    • Finance
    • Dev / Tech
    • Travel
    • View all verticals
  • Agent-Ready Index
    • SaaS Pricing Database
    • Agent-Ready SaaS Index
    • Verified band
    • AI & ML
    • Sales & CRM
  • Products
    • Pricing Widget
    • Monetize MCP Server
    • Paywall
    • Smart Proxy
    • Monetize AI Agents
    • xpay x402 Facilitator
  • Agentic Economy
    • Timeline
    • Resources
    • Manifesto
    • Stack
  • Agentic Commerce
    • Get listed
    • ChatGPT Ads
    • How ChatGPT Ads work
    • ChatGPT Ads · Apparel
    • ChatGPT Ads · Health & Beauty
    • xpay Listings · Amazon + Google
    • Pricing
    • Free audit
    • Shopify
    • WooCommerce
    • Apparel & Accessories
    • Health & Beauty
    • Overview
  • Commerce Index
    • Shopify apps directory
    • Agentic Commerce Ready Index
    • Methodology
    • Pet brands · WooCommerce
    • Pet brands · Shopify
  • Marketplace
    • 🛍️ xpay.deals — agentic storefront for deals
  • Protocols
    • Overview
    • x402
    • MPP
    • UCP
    • ACP
    • AP2
    • TAP
    • A2A
  • Agent Frameworks
    • Overview
    • LangChain
    • CrewAI
    • Claude MCP
    • AutoGPT
    • LangChain vs Mastra
    • LangGraph vs Pydantic AI
  • Company
    • About xpay
    • Blog
    • Docs
    • GitHub
  • Free prompts
    • Ecommerce prompts
    • Email marketing prompts
    • Product description prompts
    • Facebook ad prompts
    • Skincare prompts
    • Supplement prompts
    • Wine prompts
    • Electronics prompts

© 2025 Agentically Inc. All rights reserved.
Privacy PolicyTerms of UseAcceptable Use Policy