Image conversion plugins process uploaded files, write derivatives, update rewrite rules, and may invoke local or remote converters. WebP Express version 0.25.15 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64689, confirming that the review focused on file access, conversion inputs, generated output paths, rewrite behavior, converter configuration, and protection of privileged settings.
Plugin Security Certification (PSC-2026-64688): “Admin Menu Editor” – Version 1.15.2

Dashboard customization tools influence navigation, capability checks, menu visibility, redirects, and access to administrative screens. Admin Menu Editor version 1.15.2 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64688, confirming that the review focused on settings authorization, capability handling, menu configuration integrity, redirect behavior, and safe processing of custom labels, URLs, and icons.
Plugin Security Certification (PSC-2026-64687): “Breeze Cache” – Version 2.5.13

Caching and optimization plugins rewrite responses, manage cache files, and interact with CDNs and remote asset sources. Breeze Cache version 2.5.13 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64687, confirming that the review focused on cache storage, purge operations, optimization settings, remote downloads, administrator controls, and safe handling of generated assets.
Plugin Security Certification (PSC-2026-64686): “Disable Comments – Remove Comments & Stop Spam [Multi-Site Support]” – Version 2.8.0
![Plugin Security Certification (PSC-2026-64686): “Disable Comments – Remove Comments & Stop Spam [Multi-Site Support]” – Version 2.8.0 Plugin Security Certification (PSC-2026-64686): “Disable Comments – Remove Comments & Stop Spam [Multi-Site Support]” – Version 2.8.0](https://research.cleantalk.org/wp-content/uploads/2023/10/New_1_safe-1.png)
Comment management tools affect public submission paths, administration screens, feeds, APIs, and multisite policy. Disable Comments – Remove Comments & Stop Spam [Multi-Site Support] version 2.8.0 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64686, confirming that the review focused on settings access, request validation, comment-related endpoints, role-aware controls, and consistent enforcement across supported site contexts.
Plugin Security Certification (PSC-2026-64685): “Site Kit by Google – Analytics, Search Console, AdSense, Speed” – Version 1.186.0

Analytics and advertising integrations connect a WordPress dashboard to external services and expose site performance data to privileged users. Site Kit by Google – Analytics, Search Console, AdSense, Speed version 1.186.0 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64685, confirming that the review focused on service connections, dashboard data access, REST requests, administrator actions, and safe rendering of remote metrics.
Plugin Security Certification (PSC-2026-64684): “CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7” – Version 3.6.1

Contact Form 7 extensions can influence spam checks, stored submissions, redirects, and outbound webhooks. These features cross the boundary between anonymous form input, privileged records, external destinations, and front-end responses. CF7 Apps – Honeypot, Database, Redirection, Webhook, and Addons for Contact Form 7 version 3.6.1 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64684, confirming that the plugin was reviewed from a secure code perspective with attention to public submissions, anti-spam checks, stored records, redirect targets, webhook configuration, and administrator access.
Plugin Security Certification (PSC-2026-64683): “Intuitive Custom Post Order” – Version 3.2.0

Content ordering plugins turn drag-and-drop administrator actions into persistent changes across posts, pages, taxonomies, and sites. Those updates must be limited to authorized objects and protected from forged requests. Intuitive Custom Post Order version 3.2.0 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64683, confirming that the plugin was reviewed from a secure code perspective with attention to reorder permissions, request integrity, object identifiers, taxonomy operations, multisite scope, and stored ordering data.
Plugin Security Certification (PSC-2026-64682): “Template Kit – Import” – Version 1.0.16

Template import tools bring structured design data and assets into a WordPress installation. Import permissions, file validation, remote resources, and the safety of stored page content all matter before an imported kit reaches the public site. Template Kit – Import version 1.0.16 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64682, confirming that the plugin was reviewed from a secure code perspective with attention to import authorization, package validation, template data, remote assets, stored content, and post-import rendering.
Plugin Security Certification (PSC-2026-64681): “CookieAdmin – Cookie Consent Banner” – Version 1.2.2

Cookie consent plugins render banners to every visitor and store configuration that controls scripts and consent choices. Safe public output and protected administrator settings are important for both reliability and privacy workflows. CookieAdmin – Cookie Consent Banner version 1.2.2 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64681, confirming that the plugin was reviewed from a secure code perspective with attention to banner configuration, consent state handling, script controls, administrator permissions, and front-end rendering.
Plugin Security Certification (PSC-2026-64680): “WooCommerce Legacy REST API” – Version 1.0.5

Commerce APIs expose structured access to products, orders, customers, and store operations. A compatibility plugin that restores legacy endpoints must enforce authentication and permissions consistently across every request. WooCommerce Legacy REST API version 1.0.5 has successfully completed the CleanTalk Plugin Security Certification process and received PSC-2026-64680, confirming that the plugin was reviewed from a secure code perspective with attention to API authentication, request authorization, object access, input parsing, response data, and legacy endpoint behavior.