Transform your website's security with the Inspired Monks Security Header Plugin — your one-click solution for enhanced protection.
Protects against protocol downgrade attacks by ensuring your site only uses secure HTTPS connections. Automatically applied on activation!
Prevents clickjacking by restricting how your site is embedded on other sites. Now with real-time tracking of activated headers!
Prevents MIME-type sniffing and reduces code injection risks. Easily toggleable from the settings page.
Controls content sources to protect against XSS and data injection attacks. Granular control over external scripts and resources.
Manages browser features like camera, microphone, and geolocation. Better control over privacy settings, with automatic updates.
Adds browser-based XSS protection to enhance security. Monitored in real-time with feature status display.
Restricts cross-domain resource sharing to protect data. Easy management through the intuitive plugin interface.
Enforces certificate transparency to ensure your SSL/TLS certificates are trusted. Automatic certificate tracking.
Prevents cross-origin attacks by restricting resource sharing. Easily configured with a simple toggle.
Isolates browsing contexts to protect against cross-origin attacks. Added protection for sensitive user data.
Controls what referrer information is sent with requests, protecting user privacy. Easily managed with full control over shared data.
The Security Header Plugin helps protect your WordPress site by adding essential security headers that defend against common web vulnerabilities like XSS, clickjacking, and content sniffing.
The plugin supports several key headers like HSTS, X-Frame-Options, X-Content-Type-Options, CSP, XSS protection, Permissions-Policy, and more.
Simply install and activate the plugin, then go to Settings > Security Headers to enable the desired headers.
No, the plugin is user-friendly and does not require coding skills. You can easily configure it from the WordPress admin panel.
If a header causes issues, you can easily disable it from the settings page.
Yes, you can use browser developer tools or InspiredMonks.com to verify that your headers are active.
Yes, the plugin is compatible with multisite WordPress setups. Each site can have its own headers configuration.
Yes, you can uninstall the plugin without affecting your website's functionality.
Yes, the plugin is free to use and can be downloaded from the WordPress Plugin Repository.
Yes, it works with all WordPress themes without affecting styling or layout.