BACK TO DIRECTORY

Volixta SSL & Security Headers

by VOLIXTA TEAM

5.0
(1 ratings)

Volixta SSL & Security Headers helps WordPress site owners configure HTTPS, manage SSL certificates, fix mixed content, and apply modern browser security without manually editing sensitive server files.

Use Volixta to request free Let’s Encrypt certificates, install supported certificates through hosting integrations, switch WordPress to HTTPS, configure 301 redirects, and verify the certificate that visitors actually receive.

Key features include:

  • Let’s Encrypt ACME v2 certificate requests with HTTP-01 validation.
  • Certificate installation for supported cPanel, Plesk, and DirectAdmin environments, plus downloadable files for manual installation.
  • Automatic renewal checks for eligible Volixta-managed production certificates.
  • HTTPS setup and redirects with guarded Apache/LiteSpeed .htaccess changes and Nginx guidance.
  • Mixed Content tools including frontend checks, Deep Scan, Live Fixer, and serialization-safe database cleanup.
  • Security Headers including HSTS, CSP, CSP Report-Only, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, COOP, COEP, and CORP.
  • Secure Cookies for WordPress authentication and PHP sessions with Secure, HttpOnly, and SameSite=Lax protection.
  • CSP Report-Only monitoring with capped local reports and rate limiting.
  • Safety Backups before managed .htaccess changes. wp-config.php backups are downloaded directly to your computer and are not stored by Volixta on the server.
  • Site Health integration for important SSL, HTTPS, redirect, cookie, and header checks.
  • Hosting-aware guidance for Apache, LiteSpeed, Nginx, reverse proxies, Cloudflare, localhost, and manual certificate workflows.

Volixta is designed to fail safely: it uses marked configuration blocks, verifies backups and file snapshots, and avoids overwriting unrelated .htaccess content.

Privacy

Volixta SSL & Security Headers does not include analytics, usage tracking, or visitor tracking.

The plugin stores the configuration required for enabled features inside your WordPress installation. When CSP Report-Only monitoring is enabled, Volixta stores a capped local history of CSP violation diagnostics. It does not store visitor IP addresses, user agents, referrers, or CSP script samples in that report history.

Some actions communicate with external services when you explicitly use features that require them. CSP violation monitoring uses a local WordPress REST endpoint and does not send those reports to a third-party reporting service.

Examples include:

  • Let’s Encrypt: certificate requests and ACME validation.
  • Hosting integrations: configured cPanel, Plesk, or DirectAdmin connections used for certificate installation.

Only information required to perform the requested operation is sent to those services.

Localization

Text domain: volixta-ssl-security-headers
Load path: /languages

What’s Next

If you like this plugin, check out our other tools:

Screenshots

Guided SSL and security setup with score and safety backup

Guided SSL and security setup with score and safety backup

HTTPS setup with certificate check and one-click redirect

HTTPS setup with certificate check and one-click redirect

SSL certificate status, expiry, and certificate tools

SSL certificate status, expiry, and certificate tools

Let’s Encrypt issuance, installation, and renewal

Let’s Encrypt issuance, installation, and renewal

SSL file management and .htaccess safety backup

SSL file management and .htaccess safety backup

Mixed content scan, fixer, and cleanup tools

Mixed content scan, fixer, and cleanup tools

Secure Cookie protection for WordPress authentication and PHP sessions

Secure Cookie protection for WordPress authentication and PHP sessions

Recommended security headers with one-click protection

Recommended security headers with one-click protection

Advanced security headers configuration

Advanced security headers configuration

Content Security Policy configuration with enforcement and Report-Only monitoring

Content Security Policy configuration with enforcement and Report-Only monitoring

Plugin Details

Active Installs
20
Total Downloads
1,442
Version
1.3.4
Requires WP
5.8
Requires PHP
7.4
Tested Up To
7.1
Added
2025-10-02
Last Updated
2026-08-23 2:59am GMT

Ratings

5
1
4
0
3
0
2
0
1
0