BACK TO DIRECTORY





HTTP Headers gives your control over the http headers returned by your blog or website.
Headers supported by HTTP Headers includes:
- Access-Control-Allow-Origin
- Access-Control-Allow-Credentials
- Access-Control-Max-Age
- Access-Control-Allow-Methods
- Access-Control-Allow-Headers
- Access-Control-Expose-Headers
- Age
- Content-Security-Policy
- Content-Security-Policy-Report-Only
- Cache-Control
- Clear-Site-Data
- Connection
- Content-Encoding
- Content-Type
- Cross-Origin-Embedder-Policy
- Cross-Origin-Opener-Policy
- Cross-Origin-Resource-Policy
- Expect-CT
- Expires
- Feature-Policy
- NEL
- Permissions-Policy
- Pragma
- P3P
- Referrer-Policy
- Report-To
- Strict-Transport-Security
- Timing-Allow-Origin
- Vary
- WWW-Authenticate
- X-Content-Type-Options
- X-DNS-Prefetch-Control
- X-Download-Options
- X-Frame-Options
- X-Permitted-Cross-Domain-Policies
- X-Powered-By
- X-Robots-Tag
- X-UA-Compatible
- X-XSS-Protection
Screenshots

This screenshot shows up the dashboard with categories of the supported headers.

This screenshot shows up the headers of a chosen category and their current values.

This screenshot shows up the settings page where you can adjust the security headers.

This screenshot shows up the response headers returned by the web server.
Plugin Details
Active Installs
50K+Total Downloads
784,647Version
1.19.5Requires WP
3.2Requires PHP
5.3Tested Up To
6.9.7Added
2016-05-10Last Updated
2026-04-27 8:22am GMTRatings
5
51
4
5
3
4
2
5
1
5