Petra
AI assistant for GrootMade
Hi! I'm Petra 👋 Ask me to help you find the perfect WP plugin, theme, or template kit.
Blocks XSS attacks with strict content security policy.
Blocks XSS attacks with strict content security policy.
This plugin protects your site from cross-site scripting (XSS) attacks by enforcing a Strict Content Security Policy (CSP) on the frontend and login screen. It is designed for site owners and developers who want to harden their site against script injection without breaking legitimate functionality.
onclick or onload.nonce attribute, ensuring third-party content remains functional under the policy.wp_print_inline_script_tag() or wp_enqueue_script() instead of directly printing <script> tags. Scripts that bypass these APIs will be blocked and logged in the browser console.No comments yet. Be the first to start the conversation!