Disable Comments – Remove Comments & Stop Spam [Multi-Site Support] is a powerful plugin designed to give WordPress site owners complete control over comment functionality. By allowing users to globally enable or disable comments on posts, pages, and media, this plugin is an effective tool to prevent spam and unwanted discussions. It provides seamless integration with WP-CLI, XML-RPC, and REST-API, ensuring a streamlined approach to managing comments.
This plugin enhances website security by eliminating potential spam injection points and preventing unauthorized comment-based interactions. It has successfully undergone rigorous security testing and has received the prestigious Plugin Security Certification (PSC-2025-64560) from CleanTalk, ensuring robust protection against spam-related vulnerabilities.
Name of | Disable Comments – Remove Comments & Stop Spam |
Version | 2.4.7 |
Downloads | 1 000 000+ |
Description | A security-focused plugin that allows WordPress site owners to disable comments, prevent spam, and enhance website security with advanced features and CleanTalk certification. |
Security | Successfully tested for SQL Injections, XSS Attacks, CSRF Attacks, Authentication Vulnerabilities, Authentication Bypass Vulnerabilities, Privilege Escalation Vulnerabilities, Buffer Overflow Vulnerabilities, Denial-of-Service (DoS) Vulnerabilities, Data Leakage Vulnerabilities, Insecure Dependencies, Code Execution Vulnerabilities, Privilege Escalation Vulnerabilities, File Unauthorized Access Vulnerabilities, Insufficient Injection Protection, and Information Leakage Vulnerabilities. |
CleanTalk Certification | Proudly earned the “Plugin Security Certification” (PSC) from CleanTalk, indicating adherence to stringent security standards. |
Additional Information | Users can confidently manage age restrictions with the assurance of the “Plugin Security Certification” (PSC). Verify the latest details on the plugin developer’s website. |
Plugin Security Certification by CleanTalk | ![]() |
Logo of the plugin | ![]() |
PSC by CleantalkJoin the community of developers who prioritize security. Highlight your plugin in the WordPress catalog.
Key Features
- Complete control over WordPress comments, allowing site owners to disable them on posts, pages, and media files.
- Hides all “Comments” links from the WordPress Admin Menu and Admin Bar, ensuring a clean dashboard.
- Disables comment-related widgets and discussion settings to prevent unwanted user interactions.
- Blocks comment RSS/Atom feeds and redirects requests to the parent post.
- Removes the
X-Pingback
HTTP header, eliminating a common spam attack vector. - Disables outgoing pingbacks to mitigate unnecessary server requests.
- One-click removal of all spam comments, enhancing website security and performance.
- Advanced options to delete comments based on type and disable them via XML-RPC and REST-API.
- Fully compatible with WordPress Multi-Site networks, allowing centralized comment control across multiple websites.
- User role-based exclusions to allow selective comment management.
Security Assurance
Disable Comments – Remove Comments & Stop Spam prioritizes website security by minimizing the risk of spam and unauthorized comment submissions. By blocking common attack vectors such as XML-RPC and REST-API comment injections, this plugin prevents malicious actors from exploiting comment forms.
Undergoing a comprehensive security audit, the plugin has met CleanTalk’s stringent security criteria, earning the Plugin Security Certification (PSC-2025-64560). This certification validates the plugin’s compliance with modern security standards, ensuring its effectiveness in preventing spam and unauthorized access through comments.
The security measures include:
- Removal of comment-related endpoints to prevent automated spam attacks.
- Elimination of pingback functionality, which is often exploited for DDoS amplification.
- Prevention of database clutter by stopping comment-related spam at its source.
- Ensuring that disabling comments does not introduce security loopholes in WordPress installations.
Conclusion
Disable Comments – Remove Comments & Stop Spam is an essential tool for WordPress site owners who seek a secure, spam-free environment. With its powerful features, seamless multi-site support, and security-first approach, it provides an all-encompassing solution for managing and disabling comments effectively.
Having received the CleanTalk Plugin Security Certification (PSC-2025-64560), this plugin guarantees high-level protection against spam-based vulnerabilities. Whether you manage a single WordPress site or a vast multi-site network, Disable Comments ensures that your website remains secure, optimized, and free from unnecessary comment-related clutter.
Note: The date and certification information may change over time. It is advisable to verify the latest details on the plugin developer’s website.