[WordPress] 外掛分享: SecureGate Captcha Lite

WordPress 外掛 SecureGate Captcha Lite 的封面圖片。

前言介紹

  • 這款 WordPress 外掛「SecureGate Captcha Lite」是 2026-01-13 上架。
  • 目前尚無安裝啟用數,是個很新的外掛。如有要安裝使用,建議多測試確保功能沒問題!
  • 上一次更新是 2026-01-17,距離現在已有 39 天。
  • 外掛最低要求 WordPress 5.8 以上版本才可以安裝。
  • 外掛要求網站主機運作至少需要 PHP 版本 7.4 以上。
  • 尚未有人給過這款外掛評分。
  • 還沒有人在論壇上發問,可能目前使用數不多,還沒有什麼大問題。

外掛協作開發者

sabbir37 |

外掛標籤

captcha | security | turnstile | spam protection | brute force protection |

內容簡介

<html>
<head>
<meta charset="UTF-8">
</head>
<body>

<p><strong>SecureGate Captcha Lite 簡介:</strong> SecureGate Captcha Lite 是一款高效的安全套件,旨在保護您的 WordPress 網站免受騷擾性垃圾郵件、惡意機器人和暴力攻擊。透過像 Cloudflare Turnstile 這樣專業級工具,以及我們獨特的數學和字符 CAPTCHA 備用系統,我們確保您的網站保持不可侵入,同時為合法用戶提供無縫、隱私優先的體驗。</p>

<ul>
<li><strong>為什麼選擇 SecureGate Captcha Lite?</strong></li>
</ul>

<ul>
<li><strong>完整保護:</strong>保護所有關鍵的 WordPress 表單,包括管理員登錄、用戶註冊、密碼重置和評論提交。根據您的需求,每個表單都可以單獨啟用或禁用。</li>
<li><strong>隱私優先:</strong>設計時考慮了 GDPR 合規性。使用 Cloudflare Turnstile 進行隱私焦點檢測,並包含自託管的備用 CAPTCHA,不需要任何外部 API 連接。</li>
<li><strong>極速表現:</strong>優化的代碼僅在需要時加載。沒有多餘的元素,不會發出不必要的請求,完全與所有主要快取插件兼容,確保您的網站保持快速。</li>
<li><strong>智慧速率限制:</strong>智能速率限制通過跟踪失敗的登錄嘗試,自動暫時鎖定可疑 IP 地址,防止暴力攻擊。</li>
<li><strong>易於配置:</strong>直觀的管理界面,清晰設置 CAPTCHA 提供者、受保護表單和安全規則。幾分鐘內即可開始使用合理的默認值。</li>
</ul>

<ul>
<li><strong>核心功能:</strong></li>
</ul>

<ul>
<li><strong>CAPTCHA 提供者</strong></li>
<ul>
<li><strong>Cloudflare Turnstile:</strong>現代、注重隱私的 CAPTCHA,擁有優秀的 UX</li>
<li><strong>備用 CAPTCHA:</strong>自託管保護系統,可隨時工作</li>
</ul>
</ul>

<ul>
<li><strong>受保護表單:</strong>包括 WordPress 登錄、用戶註冊、密碼重置和評論提交</li>
<li><strong>安全功能:</strong>如速率限制、IP 阻塞、自訂閾值等</li>
<li><strong>隱私與合規性:</strong>包括 GDPR 就緒、數據最小化、7 天自動清理等</li>
<li><strong>性能優化:</strong>如條件加載、零影響、快取友好等功能</li>
<li><strong>適合對象:</strong>包括博客作者、會員網站、商務網站、個人博客和作品集網站</li>
<li><strong>技術規格:</strong>如 WordPress 版本、PHP 版本、多站點兼容性等</li>
</ul>

</body>
</html>
</ul>

原文外掛簡介

SecureGate Captcha Lite is a high-performance security suite built to safeguard your WordPress site from intrusive spam, malicious bots, and brute-force attacks. Leveraging professional-grade tools like Cloudflare Turnstile alongside our unique Math and Character CAPTCHA fallback system, we ensure your site remains impenetrable while maintaining a seamless, privacy-first experience for legitimate users.
Protect Your Store – Upgrade to Pro Now
Why Choose SecureGate Captcha Lite?
Complete Protection
Secure all critical WordPress forms including admin login, user registration, password reset, and comment submissions. Each form can be individually enabled or disabled based on your needs.
Privacy-First Approach
Built with GDPR compliance in mind. Uses Cloudflare Turnstile for privacy-focused bot detection and includes a self-hosted fallback CAPTCHA that requires zero external API connections.
Lightning Fast Performance
Optimized code that loads only when needed. No bloat, no unnecessary requests, and fully compatible with all major caching plugins to ensure your site remains fast.
Smart Rate Limiting
Intelligent rate limiting prevents brute-force attacks by tracking failed login attempts and automatically locking out suspicious IP addresses temporarily.
Easy to Configure
Intuitive admin interface with clear settings for CAPTCHA providers, protected forms, and security rules. Get started in minutes with sensible defaults.
Core Features
CAPTCHA Providers

Cloudflare Turnstile – Modern, privacy-focused CAPTCHA with excellent UX

Free forever with generous limits
Invisible verification for most users
No user frustration with image puzzles
Privacy-compliant (no cookies or tracking)
Easy API key setup

Built-in Fallback CAPTCHA – Self-hosted protection that works always

Math challenges (simple arithmetic)
Warped text recognition challenges
No external dependencies or API keys
GDPR compliant by design
Perfect for restricted networks

Protected Forms

WordPress Login – Protect admin and frontend login forms from credential stuffing
User Registration – Stop spam bot registrations instantly
Password Reset – Prevent password reset abuse and email flooding
Comment Forms – Block spam comments without moderation queues

Security Features

Rate Limiting – Configure maximum failed attempts before temporary lockout
Automatic IP Blocking – Temporary bans for suspicious IPs based on behavior
Customizable Thresholds – Set your own limits for attempts and lockout duration
Admin Exemptions – Administrators are automatically exempt to prevent lockouts
IP Allowlisting – Bypass CAPTCHA for trusted IP addresses

Privacy & Compliance

GDPR Ready – Anonymized IP logging with automatic expiration
Data Minimization – Only essential data is stored as transients
7-Day Auto-Cleanup – All logs automatically deleted after 7 days
No External Tracking – Built-in CAPTCHA requires no third-party services
User Control – Administrators can disable all logging if desired

Performance Optimizations

Conditional Loading – Scripts load only on protected pages
Zero Impact – No performance degradation on unprotected pages
Cache Friendly – Works seamlessly with WP Rocket, W3 Total Cache, LiteSpeed Cache
Lightweight Assets – Optimized CSS and JavaScript for minimal footprint
Database Efficiency – Uses WordPress transients instead of permanent database rows

Perfect For

Bloggers – Protect comments from spam without moderation
Membership Sites – Secure registration and login processes
Business Websites – Prevent fake registrations and form abuse
Personal Blogs – Simple setup with powerful protection
Portfolio Sites – Keep contact forms and comments spam-free

Technical Specifications

WordPress Version: 5.8 or higher
PHP Version: 7.4 or higher (PHP 8.0+ recommended)
Multisite Compatible: Yes
Translation Ready: Yes (with .pot file included)
Performance Impact: Negligible (loads only on protected forms)
Browser Support: All modern browsers (Chrome, Firefox, Safari, Edge)

Supported CAPTCHA Providers
Cloudflare Turnstile
Turnstile is Cloudflare’s modern, privacy-preserving alternative to traditional CAPTCHAs. It uses sophisticated browser challenges that are invisible to most legitimate users while effectively blocking bots.
Built-in Fallback CAPTCHA
Our self-hosted CAPTCHA system offers two challenge types:
– Math Challenges: Simple arithmetic problems (e.g., “What is 7 + 3?”)
– Text Recognition: Warped text characters requiring human recognition
Both are effective against automated bots while remaining accessible to humans.
Comparison with Other CAPTCHA Plugins
Unlike many CAPTCHA plugins that rely solely on external services, SecureGate Captcha Lite provides:
– Multiple provider support with automatic fallback
– Self-hosted option for complete independence
– Advanced rate limiting built-in
– Modern, user-friendly admin interface
– Regular updates and active development
– Clean, well-documented code
Privacy & Data Collection
What Data Does This Plugin Collect?
SecureGate Captcha Lite is designed with privacy as a core principle:
Stored Locally (in your WordPress database as transients):
* Anonymized IP addresses (last octet removed)
* Timestamp of verification attempts
* Success/failure status of CAPTCHA verifications
* Failed attempt counters for rate limiting
NOT Stored:
* User emails or usernames
* Personal identifying information
* Browser fingerprints
* Tracking cookies (plugin-side)
* Permanent user profiles
External Service Data:
When Cloudflare Turnstile is enabled, user browser data is sent to Cloudflare for bot detection. Please review Cloudflare’s Privacy Policy for details.
When using the Built-in CAPTCHA, NO external services are contacted.
Data Retention:
All logs are stored as WordPress transients and automatically deleted after 7 days. Administrators can disable logging entirely in settings.
Right to Erasure:
No personal data is collected that would require manual erasure requests under GDPR.
Support & Documentation
Need Help?

Documentation: Visit the plugin page for guides and tutorials
Support Forum: Get help from the community at WordPress.org Support
Bug Reports: Report issues on the support forum
Feature Requests: Share your ideas on the support forum

Response Time:
We monitor the support forum regularly and aim to respond within 24-48 hours for most queries.
Credits & Acknowledgments
Developed with ❤️ by R.Sabbir
Special Thanks:
* Cloudflare team for Turnstile
* WordPress community for feedback
* Early adopters and beta testers
Third-Party Services:
When Cloudflare Turnstile is enabled, this plugin connects to Cloudflare’s servers for CAPTCHA verification. By using Turnstile, you agree to Cloudflare’s Terms of Service and Privacy Policy.
About the Developer
R.Sabbir is a WordPress security specialist focused on creating user-friendly security solutions for WordPress sites. With years of experience in web development and security, the SecureGate Captcha plugin series aims to make enterprise-grade security accessible to everyone.
Other Plugins:
* Stay tuned for more security-focused WordPress plugins!
Rate This Plugin
If SecureGate Captcha Lite has helped protect your site, please consider leaving a 5-star review. Your feedback helps us improve and motivates continued development!

各版本下載點

  • 方法一:點下方版本號的連結下載 ZIP 檔案後,登入網站後台左側選單「外掛」的「安裝外掛」,然後選擇上方的「上傳外掛」,把下載回去的 ZIP 外掛打包檔案上傳上去安裝與啟用。
  • 方法二:透過「安裝外掛」的畫面右方搜尋功能,搜尋外掛名稱「SecureGate Captcha Lite」來進行安裝。

(建議使用方法二,確保安裝的版本符合當前運作的 WordPress 環境。


1.0.1 | trunk |

延伸相關外掛(你可能也想知道)

  • Solid Security – Password, Two Factor Authentication, and Brute Force Protection 》ing iThemes Security Plugin can benefit you:, 保護您的 WordPress 網站的最佳外掛程式, 平均每天有 30,000 個網站遭受駭客攻擊,在網路上每 39 秒就會有一...。
  • Limit Login Attempts 》ck IP addresses and user agents that are linked to suspicious activity or attacks on your website., DOS Protection – Protect your website from a De...。
  • WordPress Brute Force Protection – Stop Brute Force Attacks 》er a certain number of failed login attempts. However, this can also lead to locking out genuine users who simply forgot their password or mistyped...。
  • Honeypot Toolkit 》這個外掛可以讓你自動將你的 Project Honeypot 連結插入所有頁面,並將列在 Http:BL 清單中的 IP 位址封鎖。還有一個選項可以阻止列在 Spamcop 黑名單中的 IP...。
  • Kaya Login Captcha 》為什麼要使用「Kaya Login Captcha」?, 這個外掛在登入、註冊和忘記密碼表單上加入簡易驗證碼。, 安裝使用簡單,驗證碼設定可以完全自定義,你可以選擇要在...。
  • WPHH SECURE – AIO WordPress Security With File Locking & WP Hide Login 》**總結:**, , WPHHSECURE 外掛提供了一個簡單的介面,通過更改文件權限來鎖定或解鎖WordPress文件和文件夾。這個外掛旨在提高您的WordPress網站的安全性,同...。
  • Anti-Brute Force, Login Fraud Detector WordPress plugin 》以下是 Anti-Brute Force, Login Fraud Detector WordPress 外掛的介紹摘要:, - 這是一個安全外掛,可以即時地偵測和阻攔嘗試登入 WordPress 網站的惡意 IP ...。
  • Project Force Field 》Faison Zutavern、Jon Valcq、以及Emma Edgar,來自Orion Group LLC搭載全新外掛 Project Force Field,為WordPress帶來卓越的暴力攻擊保護機制。透過記錄失...。
  • Guardify Firewall 》### 總結:, Guardify 是一個功能強大的 WordPress 防火牆外掛程式,旨在保護您的網站免受各種威脅,包括暴力攻擊、SQL 注入、惡意機器人和未經授權的存取嘗試...。
  • Fortress Login Pro – Secure, Hide & Rename Login URL 》**總結:**, Fortress Login Pro 是一款高性能的 WordPress 登入安全外掛,能夠隱藏您的 wp-login.php 網址、保護您的後台管理介面,並使用安全、輪轉的自訂...。
  • eSherpa Login Guard 》總結:eSherpa Login Guard是一款有效智能地保護您的WordPress網站免受暴力攻擊的外掛程式,瑞士精密製造,完全不需外部依賴。, , 問題與答案:, 1. 這個外掛...。
  • Greyfu Login Captcha 》**Greyfu登入驗證外掛為您的WordPress登入表單新增了一個安全驗證步驟,有助於阻擋自動化登入嘗試和暴力攻擊。**, , 1. **Lite版本(免費):**, - 簡單基...。
  • Simple Login Guard – Monitor & Block Attempts 》總結:Simple Login Guard是一個輕量級的登入安全外掛,旨在保護您的 WordPress 網站免受暴力攻擊。它監控每次登入嘗試,記錄失敗和成功的登入,追蹤可疑行為...。
  • VMP Security – Firewall, Malware Scan, and Login Security 》總結:VMP Fence Security 提供了一套綜合的 WordPress 安全掃描器,透過進階的多重掃描器架構,檢測惡意軟體、漏洞、可疑活動和安全威脅,保護 WordPress 網...。
  • Authica 》總結:Authica™將您的預設WordPress登錄界面轉變為完全品牌化、安全和用戶友好的體驗,適合機構、開發人員和企業,想要時尚和安全兼具。, , 1. Authica™提供...。

文章
Filter
Mastodon