ModxComments
ModxComments is a cache-safe, AJAX-first threaded comments Extra
Creator: Konstantin Shulyarenko (koshsh)
Screenshots
About ModxComments
A flexible AJAX-powered commenting system with threaded comments and replies, guest and authenticated user support, moderation, email notifications, spam protection, voting and ratings. Includes an easy-to-use manager interface and can be quickly added to resources using a simple snippet call.
Information
Released
October 9, 2026
Supported Database
MySQL
License
GPLv2
Supported Versions
2.8 - <3.2
Downloads
0
Instructions
Install / upgrade
[[ModxComments]]
Existing modxcomments_comments and modxcomments_votes data are preserved during upgrades.
Manager login on the frontend
When no normal web-context login exists, a valid manager session is accepted for frontend commenting only when the manager user is sudo or belongs to Administrator.
The comment is saved with that MODX user ID and current profile information.
Frontend Admin badge
Comments belonging to a current sudo/Administrator user are rendered with:
★ Admin Full Name
The displayed name comes from the user's current profile fullname, falling back to username.
Settings
modxcomments.allow_guests = 1
modxcomments.max_depth = 5
modxcomments.max_length = 5000
modxcomments.edit_time = 900
modxcomments.rate_limit_count = 5
modxcomments.rate_limit_window = 60
modxcomments.guest_status = published
modxcomments.user_status = published
modxcomments.threads_per_page = 20
modxcomments.captcha_enabled = 0
modxcomments.captcha_provider = turnstile
modxcomments.captcha_guests_only = 1
modxcomments.notify_admin = 0
modxcomments.notify_replies = 0
CAPTCHA providers
The comment form supports four providers without changing the [[ModxComments]] call:
none— no CAPTCHAturnstile— Cloudflare Turnstilehcaptcha— hCaptcharecaptcha— Google reCAPTCHA v2 or v3yandex— Yandex SmartCaptcha
Enable CAPTCHA with modxcomments.captcha_enabled=1, choose the provider in modxcomments.captcha_provider, and configure that provider's keys.
For Google reCAPTCHA, set modxcomments.recaptcha_version to v2 or v3. With v3, modxcomments.recaptcha_min_score controls the minimum accepted score and defaults to 0.5.
modxcomments.captcha_guests_only=1 requires CAPTCHA only for unauthenticated visitors.
Existing installations that used the old Turnstile enable/guests-only switches are migrated automatically to the generic CAPTCHA settings during upgrade.
Email templates
Editable Chunks:
ModxCommentsEmailAdminSubjectModxCommentsEmailAdminBodyModxCommentsEmailReplySubjectModxCommentsEmailReplyBody
User changes to these Chunks are preserved during upgrades.
Uninstall
Component registration, settings and menu are removed. Comment tables/data are intentionally preserved.
Security notes
modxcomments.resource_signing_key is generated automatically and is used only to sign the resource/context rendered by the snippet. Do not publish or routinely rotate it; changing it invalidates cached comment widgets until those pages are regenerated.
The manager comments CMP is intentionally limited to sudo users and members of the Administrator group in this release.
After upgrading from an earlier beta, clear the MODX resource cache so pages contain the new signed resource token.