- Loop WP
- Posts
- Issue #147 Loop WP
Issue #147 Loop WP
Remember Gravatar?
Hi, friend. š
Welcome to Issue #147 of Loop WP!
Last week, we looked at WP Crontrol, one of my must-use plugins as part of my stack.
This week, itās all about Gravatar.
Letās go! š
mySites.guru
Award Winning Admin Tools for managing large numbers of WordPress Sites easily! |
Remember that Gravatar āmaybeā got hacked?
Itās been a long time since I talked about Gravatar, thatās probably the case for most of us.
š² I last discussed Gravatar almost 3.5 years ago, when Automattic claimed it was not subject to a huge data breach.
Automatticās response angered many at the time, and I have no idea if they have made any changes to their security or API since the incident.
š¤ However, it looks like there was a related breach only a few months ago with Earth 2.
ā In October 2024, 421k unique email addresses from the virtual earth game Earth 2 were derived from embedded Gravatar images.
Appearing alongside player usernames, the root cause was related to how Gravatar presents links to avatars as MD5 hashes within consuming services, a feature Earth 2 advised has now been disabled on their platform.ā
š” At the time of writing, Automatticās most recent update (January 27th, 2025) to its Gravatar privacy policy maintains Gravatar was never compromised.

Gravatar Privacy Concerns?
Gravatar is a service I use personally, but it has made me think twice about whether I should use it.
š” When building websites for clients, I don't use Gravatar when memberships are involved or Author Profiles are required.
Using Gravatar can cause GDPR issues, so using local images is much better.
Local Solutions
Pixel Avatars - This is good
Simple Local Avatars - What I use
ā ļø Automattic has recently released an āEnhanced Gravatarā plugin, which Iāve not had a chance to test, but apparently:
āJust by enabling the plugin, the plugin ensures that no referrer information is sent to Gravatar. The opt-in proxy service also keeps IP addresses from being exposed or logged.ā
Hello, world. Remember us?
šØ This post grabbed my attention and inspired this weekās newsletter.
hello, world! remember us? we're gravatar - that profile service that's been quietly powering your avatars across slack, github, and millions of other sites for 20 years.
and we've got news... š§µā Gravatar (@gravatar)
8:09 PM ā¢ Jan 20, 2025
As part of their big plans for 2025, Gravatar released the use of custom domains, which I reluctantly bought from WordPress.com (Automattic)
(I asked but received no reply about whether another domain provider could be used.)
The Original āLink in the Bioā
š¤© I have to admit that from a design and feature perspective, Gravatar has never looked or functioned better.
Custom domains were on the start, and there are a slew of new features already available/on the way:
š§ Iāve not had a chance to take all these new features for a spin, but I will be checking them out and writing a follow-up to this weekās newsletter at a later date.
A Final Question(s)
ā”ļø There are a lot of websites that use Gravatar, although growth seems to be trending down (which could be why Gravatar has recently made big changes to its website and offering).
Given everything weāve discussed, Iām left with a lot of thoughts and some questions. š
I guess we have to ask ourselves, friend, if Gravatar is safe to use and whether there are privacy issues we should be concerned about when using a service for such convenience.
Classifieds
Fast. Faster. Fastest. What is even faster? FastPixel! Unlimited Image Optimization, Caching and Global CDN for your WordPress website. |
Kinsta, a reliable hosting partner for your WordPress sites. Everything you need: edge caching, CDN, WAF, 24/7 support, free migrations and much more. |
Sponsorship Opportunities
šØ The Google Doc contains all the details if youāre interested in sponsoring the Loop WP Newsletter.
Fact-based news without bias awaits. Make 1440 your choice today.
Overwhelmed by biased news? Cut through the clutter and get straight facts with your daily 1440 digest. From politics to sports, join millions who start their day informed.
Before You Go
š¤ āWhat if we left things a little bit better than when we found them?ā I ask that question and more as a guest of Nathan Wrigley on the latest WP Builds podcast.
See you next week! š
Weekly WordPress News & Tips
This week's excellent and insightful WordPress News & Tips:
Back from the Dead - Oxygen 6, rewritten from the ground up, is here. (Oxygen)
WordPress Communities - Mark International Womenās Day 2025 with Women-Led Events. (The Repository)
Plugin Check - How to Improve Custom WordPress Plugins with Plugin Check. (Eric Karkovack)
BYOK - STOP paying for AI Subscriptions and use API keys! (Brendan OāConnell)
Within WP - Mastering Conversion Tracking in WordPress with Derek Ashauer. (Remkus de Vries)
Mastering WordPress - Core Framework & Bricks Builder 2025 (WP Tuts)
4+ Million Downloads - Stop Wasting Hours on Image Details: Modula AI Does It For You. (Christian Rabier)
WooCommerce 9.7 - Smarter shipping displays and faster performance. (WooCommerce)
70% off! - How to Quickly Create a High-Performance Website. (Rodolfo Melogli)
Very Cool! - Customize WordPress embeds to match your theme. (WordPress Dev Blog)
Gender Equality - Who Leads WordPress Businesses? The Data Confirms Itās (Still) Not Women. (The Repository)
Freelancing - Managing Technical Debt as a WordPress Freelancer. (The WP Minute)
Tutorial - Mastering BEM Naming for CSS Beginners. (WP Tuts)
If you have a question about this email or WordPress, reply, and I will answer you as soon as possible.
š Until next time,
