---
title: "WP Cerber Security Antispam and Bot Detection Settings"
description: "In this article: Antispam Settings reCAPTCHA As we stated when covering WP Cerber Security hardening options, the plugin can replace other WordPress security plugins. In that article, we discussed..."
url: https://www.inmotionhosting.com/support/edu/wordpress/wp-cerber-security-antispam-bot-detection-settings/
date: 2019-11-04
modified: 2026-03-11
author: "InMotion Hosting Contributor"
categories: ["Security", "WordPress Tutorials"]
type: post
lang: en
---

# WP Cerber Security Antispam and Bot Detection Settings

**In this article:**

- [Antispam Settings](#antispam)
- [reCAPTCHA](#recaptcha)

As we stated when covering [WP Cerber Security hardening options](/support/edu/wordpress/wp-cerber-security-hardening-options/), the plugin can replace other WordPress security plugins. In that article, we discussed replacing the maintenance page as an example. This time we replace the [WordPress Heartbeat API](/support/edu/wordpress/heartbeat-ajax-php-usage/) and reCAPTCHA plugins.

WP Cerber Security has an antispam engine to protect your website forms from spam comments. Below we cover how to **enable antispam engine and reCAPTCHA features**.

## Antispam Settings

**Warning:** After you enable these settings, you should test your forms to ensure they still work.

1. [Log in to WordPress](/support/edu/wordpress/logging-into-wordpress-dashboard/).
2. On the left, hover over **WP Cerber Security** and click **Antispam**.
3. Enable antispam protection on the different form types: *Comment form, Registration form, and Other forms*.
4. Toggle **Safe mode** if necessary to allow AJAX. This may negate the need for the [WordPress Heartbeat API](/support/edu/wordpress/heartbeat-ajax-php-usage/) plugin.
5. Toggle **Logged in users** if you’d like to disable bot detection for logged in users.
6. Fill the **Query whitelist** to allow [POST request](https://wpcerber.com/antispam-exception-for-specific-http-request/) queries.
7. If a spam comment detected – **Deny it completely** or **Mark it as spam** for review.
8. **Trash spam comments** after a set number of days automatically.
9. **Save Changes**.

## reCAPTCHA

If you have a Google account, you can set up reCAPTCHA for your WordPress forms.

1. Click the ** **reCAPTCHA tab** at the top.
2. Register the website for the site and secret keys at [Google.com/reCAPTCHA](https://www.google.com/recaptcha/admin).
3. Insert your **Site key** and **Secret key** in their respective text field.
4. Toggle **Invisible reCAPTCHA** if applicable.
5. Toggle reCAPTCHA for the **Registration form**, **Lost password form**, **Login form**, and **Antispam** options for WordPress and the [WooCommerce e-commerce plugin](/support/edu/wordpress/woocommerce/what-is-woocommerce/) (if installed) to your preference.
6. **Limit attempts** for IP addresses for **#** minutes after **#** failed logins within **#** minutes.
7. **Save Changes**.

See the steps in action below:

![Register your website for a Google reCAPTCHA](https://www.inmotionhosting.com/support/wp-content/uploads/2019/08/google-recaptcha.png)*Register your website for reCAPTCHA*

![reCAPTCHA settings](https://www.inmotionhosting.com/support/wp-content/uploads/2019/08/wp-cerber-antispam-recaptcha.png)*Configure reCAPTCHA settings*

![Antispam settings](https://www.inmotionhosting.com/support/wp-content/uploads/2019/08/wp-cerber-antispam.png)*Configure reCAPTCHA Antispam*

Are you looking for enhanced performance to match your improved security stance? Check out our NGINX-powered [WordPress Hosting](https://www.inmotionhosting.com/wordpress-hosting) with our user-friendly [cPanel Cache Manager](/support/website/cache-manager-cpanel/).
