{"id":82710,"date":"2018-03-09T07:45:14","date_gmt":"2018-03-09T07:45:14","guid":{"rendered":"https:\/\/wordpress.org\/plugins\/security-header-optimization\/"},"modified":"2018-04-01T15:27:41","modified_gmt":"2018-04-01T15:27:41","slug":"security-header-optimization","status":"closed","type":"plugin","link":"https:\/\/wordpress.org\/plugins\/security-header-optimization\/","author":15965094,"comment_status":"closed","ping_status":"closed","template":"","meta":{"version":"0.0.35","stable_tag":"0.0.35","tested":"4.9.29","requires":"4.0","requires_php":"5.4","requires_plugins":"","header_name":"Security Header Optimization","header_author":"Optimization.Team","header_description":"Advanced security header optimization toolkit. Content-Security-Policy, Strict Transport Security (HSTS), Public-Key-Pins (HPKP), X-XSS-Protection and CORS.","assets_banners_color":"","last_updated":"2018-04-01 15:27:41","external_support_url":"","external_repository_url":"","donate_link":"https:\/\/github.com\/o10n-x\/","header_plugin_uri":"","header_author_uri":"https:\/\/optimization.team\/","rating":0,"author_block_rating":0,"active_installs":10,"downloads":907,"num_ratings":0,"support_threads":1,"support_threads_resolved":1,"author_block_count":0,"sections":["description","installation","changelog","faq"],"tags":[],"upgrade_notice":{"":"<p>None.<\/p>"},"ratings":[],"assets_icons":{"icon-128x128.jpg":{"filename":"icon-128x128.jpg","revision":"1837456","resolution":"128x128","location":"assets"},"icon-256x256.jpg":{"filename":"icon-256x256.jpg","revision":"1837456","resolution":"256x256","location":"assets"}},"assets_banners":[],"assets_blueprints":{},"all_blocks":[],"tagged_versions":["0.0.10","0.0.11","0.0.12","0.0.13","0.0.14","0.0.15","0.0.16","0.0.17","0.0.18","0.0.19","0.0.20","0.0.21","0.0.22","0.0.24","0.0.25","0.0.26","0.0.27","0.0.28","0.0.29","0.0.30","0.0.31","0.0.32","0.0.33","0.0.34","0.0.35"],"block_files":[],"assets_screenshots":[],"screenshots":[]},"plugin_section":[],"plugin_tags":[68184,19966,32637,187,600],"plugin_category":[52,54],"plugin_contributors":[153343],"plugin_business_model":[],"class_list":["post-82710","plugin","type-plugin","status-closed","hentry","plugin_tags-content-security-policy","plugin_tags-csp","plugin_tags-http-headers","plugin_tags-optimization","plugin_tags-security","plugin_category-performance","plugin_category-security-and-spam-protection","plugin_contributors-o10n"],"banners":[],"icons":{"svg":false,"icon":"https:\/\/s.w.org\/plugins\/geopattern-icon\/security-header-optimization.svg","icon_2x":false,"generated":true},"screenshots":[],"raw_content":"<!--section=description-->\n<p>This plugin is a toolkit for HTTP Security Header optimization.<\/p>\n\n<p>The plugin provides in a complete solution for Content Security Policy Management with support for Reporting API and legacy policy conversion based on browser sniffing.<\/p>\n\n<p>The plugin supports most security headers, including Strict Transport Security (HSTS), Public-Key-Pins (HPKP), X-XSS-Protection and all Cross-Origin Resource Sharing (CORS) related headers (Access-Control-Allow-Origin).<\/p>\n\n<p>Additional features can be requested on the <a href=\"https:\/\/github.com\/o10n-x\/wordpress-security-header-optimization\/issues\">Github forum<\/a>.<\/p>\n\n<p><strong>This plugin is a beta release.<\/strong><\/p>\n\n<p>Documentation is available on <a href=\"https:\/\/github.com\/o10n-x\/wordpress-security-header-optimization\/tree\/master\/docs\">Github<\/a>.<\/p>\n\n<!--section=installation-->\n<h3>WordPress plugin installation<\/h3>\n\n<ol>\n<li>Upload the <code>security-header-optimization\/<\/code> directory to the <code>\/wp-content\/plugins\/<\/code> directory.<\/li>\n<li>Activate the plugin through the 'Plugins' menu in WordPress.<\/li>\n<li>Navigate to the plugin settings page.<\/li>\n<li>Configure Security Header Optimization settings. Documentation is available on <a href=\"https:\/\/github.com\/o10n-x\/wordpress-security-header-optimization\/tree\/master\/docs\">Github<\/a>.<\/li>\n<\/ol>\n\n<!--section=changelog-->\n<h4>0.0.35<\/h4>\n\n<ul>\n<li>Added: plugin update protection (plugin index).<\/li>\n<\/ul>\n\n<h4>0.0.34<\/h4>\n\n<ul>\n<li>Core update (see changelog.txt)<\/li>\n<\/ul>\n\n<h4>0.0.21<\/h4>\n\n<ul>\n<li>Bugfix: JSON profile editor does not delete options when removed from JSON.<\/li>\n<\/ul>\n\n<h4>0.0.20<\/h4>\n\n<ul>\n<li>Bugfix: JSON profile editor doesn't save directives object correctly.<\/li>\n<li>Bugfix: Allow-Origin origin editor visible when disabled.<\/li>\n<\/ul>\n\n<h4>0.0.19<\/h4>\n\n<ul>\n<li>Bugfix: JSON profile editor overwrites settings.<\/li>\n<\/ul>\n\n<h4>0.0.18<\/h4>\n\n<ul>\n<li>Bugfix: Incorrect <code>X-Frame-Options<\/code> admin form validation (@baddogg99)<\/li>\n<\/ul>\n\n<h4>0.0.17<\/h4>\n\n<p>Core update (see changelog.txt)<\/p>\n\n<h4>0.0.16<\/h4>\n\n<ul>\n<li>Fix: JSON profile editor template not uploaded to WordPress.<\/li>\n<\/ul>\n\n<h4>0.0.15<\/h4>\n\n<ul>\n<li>JSON schema update.<\/li>\n<li>Added: JSON profile editor (backup and restore plugin config)<\/li>\n<li>Added: documentation on Github<\/li>\n<\/ul>\n\n<h4>0.0.14<\/h4>\n\n<p>Core update (see changelog.txt)<\/p>\n\n<h4>0.0.11<\/h4>\n\n<ul>\n<li>Bugfix: <code>X-XSS-Protection: 1; mode=block<\/code> header (@brant-kelsey)<\/li>\n<\/ul>\n\n<h4>0.0.10<\/h4>\n\n<ul>\n<li>Bugfix: uninstaller.<\/li>\n<\/ul>\n\n<h4>0.0.9<\/h4>\n\n<p>Bugfix: settings link on plugin index.<\/p>\n\n<h4>0.0.8<\/h4>\n\n<p>Core update (see changelog.txt)<\/p>\n\n<h4>0.0.2<\/h4>\n\n<p>Bugfix: error after activating plugin.<\/p>\n\n<h4>0.0.1<\/h4>\n\n<p>Beta release. Please provide feedback on <a href=\"https:\/\/github.com\/o10n-x\/wordpress-security-header-optimization\/issues\">Github forum<\/a>.<\/p>\n\n<!--section=faq-->\n<dl>\n<dt>Installation Instructions<\/dt>\n<dd><h3>WordPress plugin installation<\/h3>\n\n<ol>\n<li>Upload the <code>security-header-optimization\/<\/code> directory to the <code>\/wp-content\/plugins\/<\/code> directory.<\/li>\n<li>Activate the plugin through the 'Plugins' menu in WordPress.<\/li>\n<li>Navigate to the plugin settings page.<\/li>\n<li>Configure Security Header Optimization settings. Documentation is available on <a href=\"https:\/\/github.com\/o10n-x\/wordpress-security-header-optimization\/tree\/master\/docs\">Github<\/a>.<\/li>\n<\/ol><\/dd>\n\n<\/dl>","raw_excerpt":"Advanced security header optimization toolkit. Content-Security-Policy, Strict Transport Security (HSTS), Public-Key-Pins (HPKP), X-XSS-Protection and &hellip;","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin\/82710","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin"}],"about":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/types\/plugin"}],"replies":[{"embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/comments?post=82710"}],"author":[{"embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wporg\/v1\/users\/o10n"}],"wp:attachment":[{"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/media?parent=82710"}],"wp:term":[{"taxonomy":"plugin_section","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_section?post=82710"},{"taxonomy":"plugin_tags","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_tags?post=82710"},{"taxonomy":"plugin_category","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_category?post=82710"},{"taxonomy":"plugin_contributors","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_contributors?post=82710"},{"taxonomy":"plugin_business_model","embeddable":true,"href":"https:\/\/wordpress.org\/plugins\/wp-json\/wp\/v2\/plugin_business_model?post=82710"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}