Skip to main content
Drupal is a registered trademark of Dries Buytaert
Release: OpenID Connect / OAuth client 3.0.0-alpha9 New alpha version released for module openid_connect (3.0.0-alpha9). Release: Opensolr Search 4.5.0 Minor update available for module opensolr_search (4.5.0). Release: Timelinr 1.0.1 Minor update available for module timelinr (1.0.1). Usage Milestone: Simplify Module simplify crossed 10,000 active installs. Usage Milestone: Views Reference Filter Module entityreference_filter crossed 10,000 active installs. Usage Milestone: Dropdown Language Module dropdown_language crossed 10,000 active installs. Usage Milestone: Paragraphs Browser Module paragraphs_browser crossed 10,000 active installs. Usage Milestone: OpenAPI Module openapi crossed 10,000 active installs. Usage Milestone: Decoupled Router Module decoupled_router crossed 10,000 active installs. Module Revived: Entityqueue Buttons 1.1.2 Module entityqueue_buttons updated after 8 months of inactivity (1.1.2).

SpamSpan filter

13,795 sites Security covered Drupal 10–11
View on drupal.org

SpamSpan helps protect email addresses from being harvested by spambots. It displays email addresses as clickable links for users with JavaScript enabled, but shows them in a more readable format for those without JavaScript or with it disabled, making it accessible to all users.

The SpamSpan module obfuscates email addresses to help prevent spambots from
collecting them. It is based on the technique from
spamspan but has undergone major modifications, as
the original spamspan code hasn't been updated since 2007.

The problem with most email address obfuscations is, that they rely upon
JavaScript being enabled on the client side. This makes the technique
inaccessible to people with screen readers. SpamSpan however will produce
clickable links if JavaScript is enabled, and will show the email address as
example [at] example.com if the browser does not support
JavaScript or if JavaScript is disabled.

This technique is unlikely to be absolutely foolproof. It is possible in theory
for a determined spambot to harvest addresses from your site, no matter how you
disguise them. But research suggests that by far the great majority of spambots
do not bother to attempt to collect addresses which have been hidden using
JavaScript.

Requirements

This module requires no modules outside of Drupal core.

Installation

Install as you would normally install a contributed Drupal module. For further
information, see
Installing Drupal Modules.

Configuration

  1. Go to the Extend page (/admin/modules), and enable the
    spamspan module (under Input Filters)

  2. Go to the Text Formats and Editors page (/admin/config/content/formats)
    and configure the desired input formats to enable the filter.

  3. (optional) Set available options under "Filter Settings".

Versions

Drupal 10.
The 3.x version is compatible with Drupal 10. It requires the php-xml extension installed on your web server, since it makes use of DOM (sudo apt-get install php-xml, when using apt-get).

Drupal 9.
Both the 3.x and the 8.x-2.x versions are compatible with Drupal 9, we recommend using the 3.x Branch, as older branches are not properly maintained anymore

Drupal 7
The 7.x-1.x is Drupal 7 compatible. NOTE, that this version is not properly maintained anymore.

Alternative modules

Depends on

Dependencies of the latest stable release

  • filter Drupal core

Required by

Tracked projects that depend on this one

No tracked projects depend on this one yet.

Activity

Tracked releases
2
Tracked since
Feb 2025
Latest release
1 year ago
Releases (12 mo)
0 ▼ from 2
Maintenance
Slowing

Releases

Version Type Core Release date
3.2.2 Stable 10–11 Aug 4, 2025
3.2.1 Stable 9–11 Feb 11, 2025