This PR linked solves the problem for every encoding attackers can invent unlike the treadmill of chasing new filters. It also works in a safe way for you, because all data is deniable always.
A attacker can invent a new way around the filters and post CP as the first TX using that method. No way to defend it because the only way to close every hole is to stop accepting new transactions at all. Because of that filters cannot and will not ever protect you from CP being stored in your chain state.
Step back and remember, the proposed filtering is authoritarian control over bitcoin transactions. Think of the children + we must do something, this is something, we must do this. Classic government marketing for new authoritarian bullshit.