• This plugin contains the following line in sweetcaptcha.php:

    wp_enqueue_script(‘sweetcaptcha-csrf’, ‘//’.SWEETCAPTCHA_SITE_URL.’/api/v2/apps/csrf/’.$app_id, array(), $ver, true);

    which loads an external JS file that adds a revenue raising search bar to your website when displayed on mobile devices.

    The search bar appears under the address bar in mobile safari and contains the words “Search Web”. If used, your search is routed through https://www.errnio.com and https://www.trovi.com

    I don’t believe this is mentioned anywhere in the documentation for the plugin, and I wouldn’t have installed it if i knew it was hijacking searches to raise money.

Viewing 6 replies - 1 through 6 (of 6 total)
  • Plugin Contributor Sweet Captcha

    (@sweetcaptcha)

    Hi wishie,
    Thank you for your feedback,
    sweetCaptcha is a FREE project, we had some pilots for a very short time with monetization solutions back in the past, but they were just pilots, meaning
    ended long time ago.

    sweetCaptcha was always Free from ads and will stay so.

    feel free to reach out on any issue, we are here to help if needed-
    [email protected]

    Lara.
    sweetCaptcha Support Team

    wishle thanks so much for finding this. I was seeing this strange search bar on my site and was driving me crazy as I couldn’t understand where it is coming from

    by the way, this errorbar exists as in current version of plugin (October 2014)

    Plugin Contributor Sweet Captcha

    (@sweetcaptcha)

    Hi JustRunLah,

    Thank you for reaching out, we solved your issue and sent you
    a reply email from our support team.

    Best,
    Lara.

    hi Lara,
    as of the current plug in version, the problem persists.
    I had to completely remove the plug in to get rid of the hidden code.

    But I appreciate getting back to me and I hope this issue is address properly

    Plugin Contributor Sweet Captcha

    (@sweetcaptcha)

    Hi JustRunLah,
    Sorry to hear that you are not using sweetCaptcha,
    as we mentioned in our support mail, there isn’t any “hidden code”,
    you are welcome to re-install and if you have any issues please
    let us know, we are here to help.

    Best,
    Lara.

    Still, as of SweetCaptcha Version 3.1.0,
    The ‘hidden code’ appears as a document.write(); inside the .js file that wishie was talking about.

    wp_enqueue_script(‘sweetcaptcha-csrf’, ‘//’.SWEETCAPTCHA_SITE_URL.’/api/v2/apps/csrf/’.$app_id, array(), $ver, true);

    this file, hosted on sweetcaptcha.com, contains multiple document.write(); so it opens up a popunder for AdServe banners.

    Had to uninstall myself.
    ??

Viewing 6 replies - 1 through 6 (of 6 total)
  • The topic ‘Hidden search bar features’ is closed to new replies.