Themes
All themesNo clustered themes yet.
Market
Commercial opportunities need traceable source links before they are treated as build-worthy.
100.0% of this page's analysis has direct source links.
0 rows here require auditable proof before promotion.
0 rows have source counts but still need direct links.
No clustered themes yet.
Pain still appears around missing feature, security despite praise for easy, support.
Function _load_textdomain_just_in_time: users show security, bugs, compatibility pain that may indicate a product gap.
GD Security Headers · Function _load_textdomain_just_in_time Hello< can you please fix the following: Function _load_textdomain_just_in_time was called incorrectly. complaint There has been a critical error on this website.There has been a critical error on this website.: users show security, bugs, compatibility pain that may indicate a product gap.
GD Security Headers · There has been a critical error on this website. complaint How to remove?How to remove?: users show security, performance, missing feature pain that may indicate a product gap.
GD Security Headers · Today I have updated some configurations (in the plugin) and now I can not keep it active. complaint Network admin role not recognizedNetwork admin role not recognized: users show security, compatibility, missing feature pain that may indicate a product gap.
GD Security Headers · Network admin role not recognized In WP multisite as network admin, I was unable to export the plugin settings from /wp-admin/network/admin.php?page=gd-security-headers-tools&panel=export with this showing in the logs: GET /wp-admin/network/admin.php?page=gd-security-headers-tools&gdsih_handler=getback&run=export&_ajax_nonce=afcd44fb9f HTTP/1.1" 500 The prob complaint A lot of mistakes in the generated CSPA lot of mistakes in the generated CSP: users show security, bugs, missing feature pain that may indicate a product gap.
GD Security Headers · A lot of mistakes in the generated CSP There are a lot mistakes in the generated Content-Security-Policy statement. question The Content-Security-Policy directive name s.w.org contains one or more invaliThe Content-Security-Policy directive name s.w.org contains one or more invali: users show security, bugs, support pain that may indicate a product gap.
GD Security Headers · The Content-Security-Policy directive name s.w.org contains one or more invali I can’t seem to solve this problem in any way: The Content-Security-Policy directive name ‘s.w.org’ contains one or more invalid characters. mixed HSTS preload optionHSTS preload option: users show security, missing feature, support pain that may indicate a product gap.
GD Security Headers · HSTS preload option This has been mentioned on this forum before, but the post is still unresolved and now closed: Could you please allow adding the “preload” flag to the HSTS setting? mixed Can your plugin do nonce?Can your plugin do nonce?: users show security, missing feature, setup pain that may indicate a product gap.
GD Security Headers · I would like to know is it currently possible to add a “nonce” security token to all the needed content element tags? complaint Strict Transport Security – Preload OptionStrict Transport Security – Preload Option: users show security, missing feature pain that may indicate a product gap.
GD Security Headers · Strict Transport Security – Preload Option Hi is it possible to add the “Preload” option to the Strict Transport Security? complaint Function _load_textdomain_just_in_time was called incorrectlyFunction _load_textdomain_just_in_time was called incorrectly: users show security, compatibility pain that may indicate a product gap.
GD Security Headers · Function _load_textdomain_just_in_time was called incorrectly The plugin triggers the following notice since WP 6.7: Notice : Function _load_textdomain_just_in_time was called incorrectly . mixed How to know if I can change to live modeHow to know if I can change to live mode: users show security, bugs, setup pain that may indicate a product gap.
GD Security Headers · How to know if I can change to live mode I have two blogs where I configured recommended security header rules using this plugin. complaint invalid charactersinvalid characters: users show security pain that may indicate a product gap.
GD Security Headers · invalid characters The Content-Security-Policy directive ‘script-src’ contains ‘script-src’ as a source expression. praise THANK YOU!!!THANK YOU!!!: users show security, bugs, missing feature pain that may indicate a product gap.
GD Security Headers · For someone who is not a developer, GD Security Headers (GPSH) plugin is truly a gift to WP users. praise Extremely helpfulExtremely helpful: users show security, missing feature, support pain that may indicate a product gap.
GD Security Headers · Extremely helpful It’s the best plug-in for setting security headers that I found so far. neutral Google RecaptchaGoogle Recaptcha: users show security, bugs, compatibility pain that may indicate a product gap.
GD Security Headers · Google Recaptcha How do you go about allowing the Google Recaptcha scripts. neutral Your website is vulnerable due to GD Security HeadersYour website is vulnerable due to GD Security Headers: users show security, missing feature, support pain that may indicate a product gap.
GD Security Headers · Your website is vulnerable due to GD Security Headers Hi, please see this linked page for info: WordPress GD Security Headers plugin <= 1.6.1 – Cross Site Scripting (XSS) vulnerability – Patchstack What should we do? neutral Invalid ArgumentInvalid Argument: users show security, compatibility, missing feature pain that may indicate a product gap.
GD Security Headers · Invalid Argument Warning: Invalid argument supplied for foreach() in /homepages/20/d34869179/htdocs/AM/wp-content/plugins/gd-security-headers/core/admin/options.php on line 24 Warning: Cannot modify header information – headers already sent by (output started at /homepages/20/d34869179/htdocs/AM/wp-content/plugins/gd-security-headers/core/admin/options.php:2 complaint Google TranslateGoogle Translate: users show bugs, missing feature, setup pain that may indicate a product gap.
GD Security Headers · I found out today that I had several console log errors. complaint please allow superadmins to exportplease allow superadmins to export: users show compatibility, support, migration pain that may indicate a product gap.
GD Security Headers · please allow superadmins to export Thanks for making this great plugin! complaint Error in theError in the: users show bugs, missing feature, support pain that may indicate a product gap.
GD Security Headers · Error in the Following your advice to look for errors in the browser console I noticed I have this error on my site: “Error with Permissions-Policy header: Origin trial controlled feature not enabled: ‘interest-cohort” Can I solve this in your plugin? complaint Pb with the theme builder from ElementorPb with the theme builder from Elementor: users show bugs, compatibility, support pain that may indicate a product gap.
GD Security Headers · Pb with the theme builder from Elementor Since last week, I have a problem with the interaction between your plugin and Elementor Pro. complaint Error with Permissions-Policy header: Parse of permissions policy failedError with Permissions-Policy header: Parse of permissions policy failed: users show bugs, missing feature pain that may indicate a product gap.
GD Security Headers · Error with Permissions-Policy header: Parse of permissions policy failed Steps: In the Feature-Policy / Permissions-Policy settings, select “Both policies” and Full screen “Allowed for self and Custom URL’s” then adding https://www.youtube.com . mixed Upgrade insecure requestsUpgrade insecure requests: users show bugs, missing feature pain that may indicate a product gap.
GD Security Headers · Upgrade insecure requests I have checked “Upgrade insecure requests” in the settings, but it is not added the the .htaccess file(and also doesn’t appear in the headers section). mixed Impressive, but would rather log CSP to report-uriImpressive, but would rather log CSP to report-uri: users show missing feature, setup pain that may indicate a product gap.
GD Security Headers · Impressive, but would rather log CSP to report-uri So first, I love that this plugin sets up good default CSP settings out of the box without users having to set a bunch of sensible WP defaults (like allow unsafe inline/eval) etc. complaint 503 Error from Automatic generate rules for CDN503 Error from Automatic generate rules for CDN: users show bugs pain that may indicate a product gap.
GD Security Headers · 503 Error from Automatic generate rules for CDN After adding quite a bit of domains to the Automatic generate rules for CDN , My site gets a 503 error. complaint Turn off or modify frame-srcTurn off or modify frame-src: users show missing feature pain that may indicate a product gap.
GD Security Headers · I can’t seem to find anything in the settings. complaint increase rows in CSP reports?increase rows in CSP reports?: users show support pain that may indicate a product gap.
GD Security Headers · This is a quality of life request more than a support question. mixed Cloudflare + POST csp report = 403Cloudflare + POST csp report = 403: users show bugs pain that may indicate a product gap.
GD Security Headers · When viewing the logs, I see sometime an error 403. praise Good Error Support!Good Error Support!: users show bugs, support pain that may indicate a product gap.
GD Security Headers · Good Error Support! praise Awesome plugin and easy to configure, lots of choicesAwesome plugin and easy to configure, lots of choices: users show missing feature, setup pain that may indicate a product gap.
GD Security Headers · Awesome plugin and easy to configure, lots of choices Thank you for creating this plugin, I have been looking for something like that. praise Does the businessDoes the business: users show missing feature, setup pain that may indicate a product gap.
GD Security Headers · Does the business Easy to install and relatively easy to configure. praise Very usefull pluginVery usefull plugin: praise conversation with limited structured signal.
GD Security Headers · Very usefull plugin A+ on headers scan, thank you for your work 🙂 A+ on headers scan, thank you for your work 🙂 neutral Google Services enable child-src directiveGoogle Services enable child-src directive: neutral conversation with limited structured signal.
GD Security Headers · Google Services enable child-src directive When I we enable Google Services: Google Youtube Google Tag Manager It seems to create: child-src ‘self’ http://www.youtube.com http://www.googletagmanager.com ; This despite disabling the CSP Level 2 child directive. This kicks up a warning for us: The child-src directive is deprecated as of CSP level 3. Authors wh mixed Support for ‘prefetch-src’ directiveSupport for ‘prefetch-src’ directive: users show missing feature, support pain that may indicate a product gap.
GD Security Headers · Support for ‘prefetch-src’ directive Though this feature was added in version 1.4, I cannot find it anywhere in the settings and it seems from the CSP log I need them for “self”. mixed Auto Cleanup Logfile …Auto Cleanup Logfile …: users show performance pain that may indicate a product gap.
GD Security Headers · Auto Cleanup Logfile … It would be nice, if there was a function that would automatically clean up the log database after a desired period of time. neutral Include local FontAwesomeInclude local FontAwesome: users show missing feature pain that may indicate a product gap.
GD Security Headers · Please add an option where Font Awesome can be loaded locally or f.ex. neutral Child-src and connect-src not setChild-src and connect-src not set: neutral conversation with limited structured signal.
GD Security Headers · Child-src and connect-src not set Thank you for your plugin. I see in my reports some blockage on child-src (stripe.js and google.com) although I have set a child rule for them. I also cannot find this child-src rule in the /Header page. The Connect rule doesn’t show up either. Is it normal? Thank you. Thank you for your plugin. I see in my reports some bloc praise Please add Statcounter and Paypal to the list of Third party servicesPlease add Statcounter and Paypal to the list of Third party services: users praise easy, which suggests what competitors already do well.
GD Security Headers · Paypal is a pretty simple add.