BACK TO DIRECTORY

Security Headers Audit

by Chowdhari Chetan

0.0
(0 ratings)

Security Headers Audit empowers WordPress site owners to fortify their browser-side security through modern HTTP security headers and robust, comprehensive auditing tools.

The plugin provides a professional, easy-to-use interface for configuring recommended security headers, seamlessly monitoring Content Security Policy (CSP) violations, recording browser console errors, and tracking security-related configuration changes within WordPress.

By proactively implementing industry-standard browser security protections, Security Headers Audit helps drastically reduce exposure to common web vulnerabilities such as Cross-Site Scripting (XSS), clickjacking, MIME-type sniffing attacks, and unsafe cross-origin interactions.

Key Features

  • Centralized Dashboard: Configure HTTP Security Headers effortlessly.
  • CSP Management: Complete Content Security Policy builder and manager.
  • HSTS Support: Enforce Strict-Transport-Security (HSTS) for SSL protection.
  • Clickjacking Protection: X-Frame-Options to prevent unauthorized iframe embedding.
  • MIME Sniffing Prevention: X-Content-Type-Options support.
  • Privacy Controls: Comprehensive Referrer-Policy management.
  • Feature Policies: Permissions-Policy configuration for browser hardware and feature control.
  • Cross-Origin Protections: Full support for COOP, COEP, and CORP policies.
  • Violation Monitoring: Detailed CSP violation logging and reporting.
  • Frontend Error Collection: Log JavaScript browser console errors experienced by real users.
  • Audit Trail: Track all security configuration changes made by administrators.
  • Portability: Import and export settings securely.
  • Clean Uninstall: Complete database cleanup support upon uninstallation.

Supported Security Headers

  • Content-Security-Policy (CSP)
  • Strict-Transport-Security (HSTS)
  • X-Frame-Options
  • X-Content-Type-Options
  • Referrer-Policy
  • Permissions-Policy
  • Cross-Origin-Opener-Policy (COOP)
  • Cross-Origin-Embedder-Policy (COEP)
  • Cross-Origin-Resource-Policy (CORP)

Screenshots

Dashboard Overview - Manage all HTTP security headers and CSP settings from a single, intuitive interface.

Dashboard Overview - Manage all HTTP security headers and CSP settings from a single, intuitive interface.

CSP Audit Log - Easily monitor Content Security Policy violations and fix them with the click of a button.

CSP Audit Log - Easily monitor Content Security Policy violations and fix them with the click of a button.

Browser Console Log - Capture and review JavaScript console errors experienced by your visitors.

Browser Console Log - Capture and review JavaScript console errors experienced by your visitors.

Header Checker - Instantly test your website's security header grade within the WordPress dashboard.

Header Checker - Instantly test your website's security header grade within the WordPress dashboard.

Plugin Details

Active Installs
0
Total Downloads
262
Version
1.0.1
Requires WP
6.0
Requires PHP
8.0
Tested Up To
7.0.4
Added
2026-06-19
Last Updated
2026-06-28 5:43pm GMT

Ratings

5
0
4
0
3
0
2
0
1
0