BLACK FRIDAY
Save 59% on PageForge Annual $191/year $485/year
Claim 59% Off →
Codenitive CAPTCHA Security icon
Actively maintained Tested with WP 7.1

Codenitive CAPTCHA Security

Add Google reCAPTCHA v2, reCAPTCHA v3 and Cloudflare Turnstile protection to WordPress, WooCommerce, Contact Form 7 and WPForms.

Active installs10+10+ tier
Downloads · 30d169▼ -10.6% vs prev. 30d
Rating—0 reviews
Health score66/100Good
All-time downloads1.4KSince Jul 2025
Support resolved—No recent threads
RequiresWP 6.4PHP 7.4+
Downloads · 7d24▼ -68.8% week over week
Our verdict

Solid choice

Codenitive CAPTCHA Security is a solid plugin choice in 2026, with a few things worth checking first. It runs on 10+ sites and was last updated 1 week ago, and scores 66/100 on our health check.

  • Actively developed — last update 1 week ago
  • Tested with the latest WordPress (7.1)
  • Small user base (10+ active installs)
  • Very few reviews so far

How does it stack up?

Side-by-side on installs, updates, ratings & support

Daily downloads

112233Jul 8Aug 21Oct 5
Yesterday5
Daily average (1y)3
Peak day62Jun 28, 2026
Last 12 months970

Download spikes usually follow a new release — each site that auto-updates counts as a download.

Rankings

Where Codenitive CAPTCHA Security stands today

WordPress.org search rankings

Live position in the plugin search, top 100
KeywordPositionCompeting pluginsCategory
captcha >100 1,351 Best captcha plugins →
recaptcha >100 1,325 Best recaptcha plugins →
turnstile >100 461 Best turnstile plugins →
woocommerce >100 10,000 Best woocommerce plugins →
WPForms >100 1,060 Best WPForms plugins →

Version adoption

Share of active sites per release.

  • 1.2100.0%

About Codenitive CAPTCHA Security

From the official readme · v1.3.0

Description

Codenitive CAPTCHA Security helps protect WordPress, WooCommerce, Contact Form 7 and WPForms from spam, bots and automated abuse.

Choose a single CAPTCHA provider from the plugin settings:

  • Google reCAPTCHA v2 Checkbox
  • Google reCAPTCHA v3
  • Cloudflare Turnstile
  • Disabled

Protect forms including:

  • WordPress Login
  • WordPress Registration
  • WordPress Lost Password
  • WordPress Comments
  • WooCommerce Login
  • WooCommerce Registration
  • WooCommerce Checkout
  • WooCommerce Product Reviews
  • Contact Form 7
  • WPForms

Google reCAPTCHA v2 supports Light and Dark themes plus Normal and Compact sizes. Cloudflare Turnstile supports Managed, Non-Interactive and Invisible widget modes plus Auto, Light and Dark themes for visible widgets.

Features

  • Google reCAPTCHA v2 Checkbox support
  • Google reCAPTCHA v2 theme and size customization
  • Google reCAPTCHA v3 score-based support
  • Cloudflare Turnstile support
  • Single CAPTCHA provider selection
  • Option to completely disable CAPTCHA protection
  • Cloudflare Turnstile theme customization
  • Cloudflare Turnstile Managed, Non-Interactive and Invisible mode mapping
  • Cloudflare Turnstile appearance customization
  • Cloudflare Turnstile widget size customization
  • WordPress Login, Registration, Lost Password and Comments protection
  • WooCommerce Login, Registration, classic Checkout, Checkout Block and Product Reviews protection
  • Contact Form 7 integration
  • WPForms Lite and WPForms Pro integration
  • Automatic CAPTCHA placement before the WPForms submit button
  • Hide CAPTCHA for logged-in users
  • CAPTCHA verification logs
  • Provider error reporting for failed verification attempts
  • Helps prevent spam, bots and brute-force attacks
  • Easy configuration through the WordPress admin settings panel
  • Compatible with most themes and caching plugins

Usage

After activating the plugin:

  1. Go to Settings → Codenitive CAPTCHA Security.
  2. Select your preferred CAPTCHA provider.
  3. Enter the Site Key and Secret Key for the selected provider.
  4. Configure additional provider settings if required.
  5. Open the Options tab and enable protection for the desired forms.
  6. Save your settings.

To disable CAPTCHA protection completely, select Disabled as the CAPTCHA provider.

WPForms

When WPForms is installed and active:

  1. Open Settings → Codenitive CAPTCHA Security → Options.
  2. Enable WPForms.
  3. Save the settings.

CAPTCHA is then added automatically before the submit button on WPForms forms. You do not need to add a WPForms CAPTCHA field manually. WPForms submissions are verified server-side using the currently selected Codenitive CAPTCHA provider.

Google reCAPTCHA v2 Customization

When Google reCAPTCHA v2 is selected, the checkbox widget supports:

Theme

  • Light (default)
  • Dark

Size

  • Normal (default)
  • Compact

These options apply only to the visible reCAPTCHA v2 checkbox. reCAPTCHA v3 is score-based and has no checkbox theme or size setting.

Cloudflare Turnstile Customization

When Cloudflare Turnstile is selected as the CAPTCHA provider, the following widget customization options are available:

Widget Mode

  • Managed (recommended)
  • Non-Interactive
  • Invisible

The widget mode is bound to the Turnstile Site Key in Cloudflare. Select the same mode in the plugin so it can apply compatible presentation settings. The plugin does not send an unsupported mode value to the browser API.

Theme

  • Auto
  • Light
  • Dark

Appearance

  • Always
  • Execute
  • Interaction-only

Size

  • Normal
  • Compact
  • Flexible

Theme, appearance and size apply to Managed and Non-Interactive widgets. Invisible widgets have no visual footprint, so those display settings are omitted when Invisible mode is selected.

CAPTCHA Verification Logs

The plugin can record failed CAPTCHA verification attempts to help administrators troubleshoot CAPTCHA configuration and verification issues.

Verification logs may include information such as:

  • CAPTCHA provider
  • Protected form or integration
  • Verification result
  • Provider error codes
  • Date and time of the failed verification

Logs are intended for troubleshooting and monitoring CAPTCHA verification failures.

Privacy

This plugin connects to external CAPTCHA services to help prevent spam and automated abuse.

Data is sent to the currently selected CAPTCHA provider when CAPTCHA protection is used on a protected form.

Supported external services:

  • Google reCAPTCHA
  • Cloudflare Turnstile

If CAPTCHA is disabled, the plugin does not load or perform CAPTCHA verification through these providers.

External Services Used

This plugin uses one of the following third-party services depending on the CAPTCHA provider selected by the site administrator.

Google reCAPTCHA v2

  • Purpose: Helps prevent spam and automated abuse during protected form submissions.
  • Data Sent: Browser and interaction information may be sent to Google as part of the CAPTCHA verification process.
  • When Sent: When Google reCAPTCHA is selected and a visitor interacts with a protected form.
  • Service Provider: Google LLC
  • Terms of Service: https://policies.google.com/terms
  • Privacy Policy: https://policies.google.com/privacy

Google reCAPTCHA v3

  • Purpose: Provides score-based protection against spam and automated abuse without displaying a checkbox challenge.
  • Data Sent: Browser, interaction and form-action information may be sent to Google as part of CAPTCHA scoring and verification.
  • When Sent: When Google reCAPTCHA v3 is selected and a visitor submits a protected form.
  • Service Provider: Google LLC
  • Terms of Service: https://policies.google.com/terms
  • Privacy Policy: https://policies.google.com/privacy

Cloudflare Turnstile

  • Purpose: Helps prevent spam and automated abuse on protected forms.
  • Data Sent: Browser, network and other information required by the Turnstile verification service may be sent to Cloudflare.
  • When Sent: When Cloudflare Turnstile is selected and CAPTCHA protection is used on a protected form.
  • Service Provider: Cloudflare, Inc.
  • Terms of Service: https://www.cloudflare.com/website-terms/
  • Privacy Policy: https://www.cloudflare.com/privacypolicy/

If Invisible Turnstile mode is used, review Cloudflare’s Turnstile Privacy Addendum and reference it in your site’s privacy policy as required by Cloudflare:
https://www.cloudflare.com/turnstile-privacy-policy/

Feedback

If you like this plugin, please leave us a 5-star review:
https://wordpress.org/support/plugin/codenitive-captcha/reviews/#new-post

Need help or have a feature request? Use the Support Forum:
https://wordpress.org/support/plugin/codenitive-captcha/

Installation

  1. Upload the plugin folder codenitive-captcha to /wp-content/plugins, or install it through the Plugins screen in WordPress.
  2. Activate the plugin through the Plugins menu.
  3. Go to Settings → Codenitive CAPTCHA Security.
  4. Select your preferred CAPTCHA provider:
    • Google reCAPTCHA v2 Checkbox
    • Google reCAPTCHA v3
    • Cloudflare Turnstile
  5. Enter the Site Key and Secret Key for your selected provider.
  6. If using Google reCAPTCHA v2, optionally select the Light or Dark theme and Normal or Compact size.
  7. If using Cloudflare Turnstile, select the same widget mode configured for the Site Key in Cloudflare, then configure the optional theme, appearance and size settings.
  8. Select the forms you want to protect.
  9. Save your settings.

Frequently asked questions

Which CAPTCHA providers are supported?

The plugin currently supports: Google reCAPTCHA v2 Checkbox Google reCAPTCHA v3 Cloudflare Turnstile You can select one provider at a time from the plugin settings.

Can I disable CAPTCHA without disabling the plugin?

Yes. Select Disabled from the CAPTCHA Provider setting. CAPTCHA widgets and verification will not be used while the provider is disabled.

Does this plugin support Cloudflare Turnstile?

Yes. Select Cloudflare Turnstile as your CAPTCHA provider and enter your Turnstile Site Key and Secret Key.

Can I customize the Google reCAPTCHA widget?

Yes. Google reCAPTCHA v2 supports Light and Dark themes and Normal and Compact sizes. reCAPTCHA v3 has no visible checkbox, so these options do not apply to v3.

Can I customize the Cloudflare Turnstile widget?

Yes. You can map the Turnstile widget mode and configure the theme, appearance and widget size from the plugin settings. Available widget modes: Managed Non-Interactive Invisible Available themes: Auto Light Dark Available appearance options: Always Execute Interaction-only Available sizes: Normal Compact Flexible

What if CAPTCHA does not show?

Make sure: A CAPTCHA provider is selected. Valid Site Key and Secret Key values are configured for the selected provider. The form is enabled in the plugin settings. CAPTCHA is not configured to be hidden for the currently logged-in user.

Does this plugin work with WooCommerce?

Yes. It supports CAPTCHA protection for WooCommerce login, registration, checkout and product review forms.

Does this plugin work with Contact Form 7?

Yes. Go to Settings → Codenitive CAPTCHA Security. Select and configure a CAPTCHA provider. Open the Options tab. Enable Contact Form 7 protection. Add the [codenit_recaptcha] shortcode to your Contact Form 7 form. Save your settings. The [codenit_recaptcha] shortcode uses the CAPTCHA provider currently selected in the plugin settings.

Does this plugin work with WPForms?

Yes. WPForms Lite and WPForms Pro are supported. Enable WPForms protection in the plugin’s Options tab and Codenitive CAPTCHA Security automatically adds CAPTCHA before the WPForms submit button. No WPForms CAPTCHA field is required.

Can I customize where CAPTCHA appears?

You can enable or disable CAPTCHA protection for supported forms through the plugin settings.

Where can I generate my Google reCAPTCHA Site and Secret Keys?

https://www.google.com/recaptcha/admin/create

Where can I generate Cloudflare Turnstile Site and Secret Keys?

https://dash.cloudflare.com/?to=/:account/turnstile

Changelog

Adds CAPTCHA protection for WPForms Lite and WPForms Pro.

1.3.0

  • Added WPForms Lite and WPForms Pro support.
  • Added an Enable WPForms option in the plugin settings.
  • Automatically displays CAPTCHA before the WPForms submit button.
  • Added server-side WPForms CAPTCHA verification using WPForms processing errors.
  • Added per-form CAPTCHA actions for reCAPTCHA v3 and Cloudflare Turnstile.
  • Supports normal and AJAX-enabled WPForms submissions through the shared CAPTCHA frontend handling.

1.2.0

  • Added Google reCAPTCHA v3 support.
  • Added Google reCAPTCHA v2 Light/Dark theme and Normal/Compact size settings.
  • Added separate reCAPTCHA v3 Site Key and Secret Key settings.
  • Added configurable reCAPTCHA v3 score threshold.
  • Added reCAPTCHA v3 support for WordPress, WooCommerce, comments and Contact Form 7.
  • Added server-side reCAPTCHA v3 score and action verification.
  • Added Cloudflare Turnstile widget mode mapping for Managed, Non-Interactive and Invisible widgets.
  • Added strict settings sanitization for providers, v3 score threshold and Turnstile options.
  • Added form-specific Turnstile action values and server-side action verification.
  • Added legacy provider migration so existing v2 and Turnstile settings continue to work after upgrade.
  • Fixed the reCAPTCHA v3 script URL and checkout script dependency.

1.1.3

  • Added a single CAPTCHA provider selection setting.
  • Added an option to disable CAPTCHA protection without disabling the plugin.
  • Added Cloudflare Turnstile theme options: Auto, Light and Dark.
  • Added Cloudflare Turnstile appearance options: Always, Execute and Interaction-only.
  • Added Cloudflare Turnstile widget size options: Normal, Compact and Flexible.
  • Improved CAPTCHA provider configuration and handling.

1.1.2

  • Added CAPTCHA verification logs.
  • Added provider error reporting for failed CAPTCHA verification attempts.

1.1.1

  • Fixed Contact Form 7 CAPTCHA validation issues.

1.1.0

  • Added Cloudflare Turnstile support.
  • Added Turnstile settings with Site Key and Secret Key fields.
  • Added server-side Turnstile verification using Cloudflare Siteverify.
  • Updated frontend rendering to avoid duplicate CAPTCHA script and widget rendering.

Full changelog on WordPress.org →

Screenshots

CAPTCHA provider selection and general plugin settings.
CAPTCHA provider selection and general plugin settings.
Cloudflare Turnstile settings and widget customization options.
Cloudflare Turnstile settings and widget customization options.
Google reCAPTCHA site and secret key settings.
Google reCAPTCHA site and secret key settings.
CAPTCHA protection options for WordPress, WooCommerce and WPForms.
CAPTCHA protection options for WordPress, WooCommerce and WPForms.
Contact Form 7 integration using the [codenit_recaptcha] shortcode.
Contact Form 7 integration using the [codenit_recaptcha] shortcode.

For developers

Is this your plugin? Show off the numbers.

Add a live badge to your site, docs or GitHub README. It updates on its own — no account needed.

Active installs badge Rating badge Health score badge

Best Codenitive CAPTCHA Security alternatives

All captcha plugins →
Alternatives
Rank Plugin Active installs Rating Updated Health
1 SiteGuard WP Plugin SiteGuard WP Plugin Adds WordPress login and admin protections, including CAPTCHA, login lock, login alerts… by jp-secure 500K+ ★★★★★★★★★★ 4.3 (15) 2 months ago 80
2 CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7 CF7 Apps Add hCaptcha, Honeypot, and Redirection to Contact Form 7 with CF7 Apps, and generate forms… by Saad Iqbal 300K+ ★★★★★★★★★★ 3.8 (135) 7 days ago 89
3 Really Simple CAPTCHA Really Simple CAPTCHA Really Simple CAPTCHA is a CAPTCHA module intended to be called from other plugins. It is… by Rock Lobster Inc. 300K+ ★★★★★★★★★★ 4.2 (131) 1 month ago 89
4 Advanced Google reCAPTCHA Advanced Google reCAPTCHA Captcha protection against spam comments & brute force login attacks using Google reCAPTCHA. by WebFactory 200K+ ★★★★★★★★★★ 4.8 (430) 4 days ago 88
5 Anti-Spam by CleanTalk – Spam Protection Without CAPTCHA Anti-Spam by CleanTalk – Spam Protection Without CAPTCHA Stop spam in contact forms, comments, registrations, and WooCommerce automatically. CAPTCHA… by CleanTalk Inc 200K+ ★★★★★★★★★★ 4.8 (3.2K) 17 hours ago 92
6 Simple CAPTCHA with Cloudflare Turnstile Simple CAPTCHA with Cloudflare Turnstile Add Cloudflare Turnstile to WordPress, WooCommerce, Contact Forms & more. The… by Elliot Sowersby / RelyWP 200K+ ★★★★★★★★★★ 4.6 (259) 7 days ago 91
7 reCaptcha by BestWebSoft reCaptcha by BestWebSoft Protect WordPress website forms from spam entries with Google reCAPTCHA. by bestwebsoft 100K+ ★★★★★★★★★★ 3.9 (391) 5 months ago 76
8 Login Lockdown & Protection Login Lockdown & Protection Protect, lockdown & secure login form by limiting login attempts from the same IP & banning… by WebFactory 100K+ ★★★★★★★★★★ 4.3 (61) 4 days ago 90
9 CAPTCHA 4WP – Antispam CAPTCHA solution for WordPress CAPTCHA 4WP – Antispam CAPTCHA solution for WordPress Use CAPTCHA to stop spam and allow customers & users to interact with your website easily… by WPKube 100K+ ★★★★★★★★★★ 3.2 (269) 1 month ago 68
10 Captcha Code Captcha Code GDPR compatible captcha anti-spam protection for login form, comments form, registration… by WebFactory 100K+ ★★★★★★★★★★ 3.9 (35) 2 weeks ago 91

FAQ

Codenitive CAPTCHA Security: quick answers

Straight answers, pulled from live WordPress.org data.

Live data from WordPress.org · checked Oct 6, 2026

Is Codenitive CAPTCHA Security free?

Yes. Codenitive CAPTCHA Security is free to download and use from the official WordPress.org plugin directory.

Is Codenitive CAPTCHA Security safe to use in 2026?

Codenitive CAPTCHA Security is a solid plugin choice in 2026, with a few things worth checking first. It runs on 10+ sites and was last updated 1 week ago, and scores 66/100 on our health check.

How many websites use Codenitive CAPTCHA Security?

Codenitive CAPTCHA Security is active on 10+ WordPress websites and has been downloaded 1,366 times since it launched in July 2025. It was downloaded 169 times in the last 30 days.

Does Codenitive CAPTCHA Security work with WordPress 7.1?

Yes. The developer has tested Codenitive CAPTCHA Security up to WordPress 7.1.2, the latest release. It requires WordPress 6.4 or newer.

What PHP version does Codenitive CAPTCHA Security need?

Codenitive CAPTCHA Security requires PHP 7.4 or higher. Most hosts run PHP 8.x today, so it works on any modern WordPress hosting.

When was Codenitive CAPTCHA Security last updated?

The latest version, 1.3.0, was released on September 26, 2026 (1 week ago).

Who makes Codenitive CAPTCHA Security?

Codenitive CAPTCHA Security is developed and maintained by codenitive.

What are the best alternatives to Codenitive CAPTCHA Security?

The most popular alternatives to Codenitive CAPTCHA Security are SiteGuard WP Plugin (500K+ installs), CF7 Apps (300K+ installs) and Really Simple CAPTCHA (300K+ installs).

Powered by PageForge

Want thousands of pages that rank like these? Build them in an afternoon.

This directory runs on the same engine as PageForge. Turn any spreadsheet, CSV or API into thousands of fast, SEO-ready WordPress pages — with schema, internal links and AI-written copy baked in.

  • CSV, Google Sheets & API data sources
  • AI content, schema & internal links per page
  • Works with Elementor, Gutenberg, Yoast & Rank Math
  • Free on WordPress.org — no credit card
Sarah is here to help!
Hi there! 👋 Need help finding what you're looking for?
Sarah
Sarah
Online & Ready to Help
Hi there! 👋 Need help finding what you're looking for?

We'll use this to continue our conversation

Just now ✓ Verified

Join 500+ SEO Pros Scaling Their Strategy

Get exclusive programmatic SEO tactics, AI content workflows, and the latest PageForge updates delivered straight to your inbox. Stay ahead of the algorithm.

We care about your data in our privacy policy.