HeaderShield

HeaderShield

توسط

HeaderShield adds a conservative set of security headers that improve browser protection without breaking most sites. It also provides optional strict cross-origin protections for sites that are ready for them.

Default headers include:

  • X-Frame-Options
  • X-Content-Type-Options
  • X-XSS-Protection (legacy)
  • Referrer-Policy
  • Permissions-Policy
  • Content-Security-Policy (upgrade-insecure-requests)
  • Strict-Transport-Security (HTTPS only)

Strict Mode can additionally enable COEP, COOP, and CORP for stronger isolation, but may break third‑party scripts or embeds. Use with care and test on staging first.

Source code for third-party assets

The admin UI uses SlimSelect for the multi-select dropdown. Human-readable source is included in the plugin:

  • JavaScript: assets/js/slimselect.js (minified build: assets/js/slimselect.min.js)
  • CSS: assets/css/slimselect.css (minified build: assets/css/slimselect.min.css)

Upstream project: https://github.com/brianvoe/slim-select (MIT). This plugin does not use a custom build process; the included files are from the published release.

  1. Upload the headershield plugin folder to /wp-content/plugins/, or install via Plugins Add New and search for HeaderShield.
  2. Activate the plugin through the Plugins menu in WordPress.
  3. Go to Security Headers in the admin sidebar to configure settings.

Optional: use as must-use plugin

You can also copy the main plugin file into /wp-content/mu-plugins/ so it is always active and cannot be disabled from the Plugins screen.

سوالات متداول

Will this break my site?

The default headers are conservative and should be safe for most sites. Strict Mode may break embeds, analytics, fonts, or CDNs, so test on staging first.

Does this affect SEO?

No. These headers improve browser security and do not affect SEO.

تصویری برای این آیتم موجود نیست.
نظری برای این آیتم موجود نیست.
0 0 رای ها
امتیازدهی
اشتراک در
اطلاع از
0 نظرات
قدیمی‌ترین
تازه‌ترین بیشترین رأی
بازخورد (Feedback) های اینلاین
مشاهده همه دیدگاه ها
هیچ نسخه‌ای برای این آیتم موجود نیست.
بدون امتیاز

قیمت:

رایگان

نگارش

آخرین انتشار

17 اردیبهشت 1405

آخرین بروزرسانی

1 ماه پیش

نصب های فعال

-

نگارش وردپرس

وردپرس 5.0+

تست شده از نسخه

وردپرس 6.9.4

نگارش PHP

PHP 7.4+

نسخه ها

0 نسخه