Market
permissions
Permissions matters only if the evidence supports a paid workflow around keeping user access, permissions, and protected content correct, not a list of isolated fixes. The current commercial thesis is: Access mistakes expose private content, block paying users, and create support-heavy account problems. The entry wedge is to audit roles, permissions, protected pages, and login handoffs before access issues reach customers.
Proof Health
Open evidenceCommercial opportunities need traceable source links before they are treated as build-worthy.
79.1% of this page's analysis has direct source links.
0 rows here require auditable proof before promotion.
0 rows have source counts but still need direct links.
Opportunity Summary
Full reportBuild an access control and account operations plugin for membership site owners, agencies, and operations teams: Access mistakes expose private content, block paying users, and create support-heavy account problems. The first wedge is to audit roles, permissions, protected pages, and login handoffs before access issues reach customers.
The unmet need is not the individual complaint. It is the recurring business workflow: Access mistakes expose private content, block paying users, and create support-heavy account problems. Current stage: commercial plugin opportunity.
Competitors
14 shownPain still appears around compatibility, support despite praise for easy, reliable.
Pain still appears around bugs, support despite praise for quality, easy.
Pain still appears around bugs, compatibility despite praise for quality, easy.
Pain still appears around missing feature, bugs despite praise for quality, reliable.
Pain still appears around bugs, setup despite praise for easy.
Pain still appears around bugs, compatibility despite praise for support, quality.
Pain still appears around bugs, compatibility despite praise for easy, reliable.
Open gap: users report missing feature, bugs without a matching collected praise theme.
Pain still appears around bugs, compatibility despite praise for quality, support.
Pain still appears around security, bugs despite praise for quality, easy.
Pain still appears around bugs, missing feature despite praise for quality, easy.
Pain still appears around support, setup despite praise for reliable, value.
Owned praise to avoid copying: reliable, performance.
Owned praise to avoid copying: quality, easy.
Evidence
Open evidence explorerPermission Per Form: users show security, bugs, missing feature pain that may indicate a product gap.
Permissions Editor for Ninja Forms · Permission Per Form Hi there, I’m not sure if this plugin is still being maintained – I was wondering if it’s possible to have these permissions set per form, instead of globally? complaint nothing shows to add a user rolenothing shows to add a user role: users show bugs, compatibility, support pain that may indicate a product gap.
Custom Access Roles · nothing shows to add a user role I’ve installed custom role editor – I go to users – custom access roles and nothing shows up – no way to do anything… Why? complaint [NOTICE] Updating to Version 6[NOTICE] Updating to Version 6: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · [NOTICE] Updating to Version 6 Heads up: Settings migration in version 5.6.03 If you’re updating from a previous version, please read this before updating. complaint 3.2.23 regression – SQL-level REST exclusion returns zero posts when no posts ha3.2.23 regression – SQL-level REST exclusion returns zero posts when no posts ha: users show security, bugs, compatibility pain that may indicate a product gap.
Members – Membership & User Role Editor Plugin · 3.2.23 regression – SQL-level REST exclusion returns zero posts when no posts ha After updating Members from 3.2.22 to 3.2.23, frontend features that load posts via the REST API began returning zero results on our site. complaint Known bugs only fixed when you pay for itKnown bugs only fixed when you pay for it: users show bugs, compatibility, missing feature pain that may indicate a product gap.
PublishPress Permissions: Control User Access for Posts, Pages, Categories, Tags · Known bugs only fixed when you pay for it Too complicated to setup and interfers with other plugins. complaint Plugin conflict causes Timeout when attempting to view category postsPlugin conflict causes Timeout when attempting to view category posts: users show bugs, compatibility, performance pain that may indicate a product gap.
WP JV Post Reading Groups · Plugin conflict causes Timeout when attempting to view category posts When I attempt to view a list of category posts, after a long wait, I get a timeout error. mixed Can’t edit Font Source fieldCan’t edit Font Source field: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · I’ve tried: Entering the full font URL Using your recommended wildcard format Deleting default entries After saving, my entries disappear, and default values reappear. mixed Problem with caching pluginProblem with caching plugin: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Unfortunately, I have a challenge working with the WP Fastest Cahce plugin. mixed No response from command line commandNo response from command line command: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · No response from command line command Our dev site is hosted with WP Engine. mixed PHP WarningsPHP Warnings: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · PHP Warnings Hello Kevin, Using WordPress 6.8 with PHP 8.3, I have the following PHP warnings flooding the wp_debug log file: PHP Warning: Undefined array key "fp_bluetooth_src_domain" in /wp-content/plugins/security-header-generator/work/inc/kcp-cspgen-headers.php on line 791 PHP Warning: Undefined array key "fp_captured-surface-control_src_domain" in /wp-c mixed Fatal error on save changesFatal error on save changes: users show bugs, compatibility, missing feature pain that may indicate a product gap.
Permissions Editor for Ninja Forms · Fatal error on save changes I installed the plugin, opened the settings page, set additional permissions for the editor role and when I saved the changes I got the following error: PHP Fatal error: Call to a member function add_cap() on a non-object in /var/www/vhosts/xxxxx/httpdocs/wp-content/plugins/permissions-editor-for-ninja-forms/permissions-editor-for mixed Does the plugin require update to .htaccess?Does the plugin require update to .htaccess?: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · I am a little confused about how this plugin works. mixed Questions before to download and use…Questions before to download and use…: users show security, compatibility, missing feature pain that may indicate a product gap.
Roles & Capabilities · Questions before to download and use… Hi, Your plugin seems very interesting and very simple at first sight. mixed IP address access restriction does not work when using Cloudflare ProxyIP address access restriction does not work when using Cloudflare Proxy: users show security, bugs, compatibility pain that may indicate a product gap.
Restricted Site Access · IP address access restriction does not work when using Cloudflare Proxy Hello, I started using Cloudflare to further protect my site, and discovered a problem with your plugin. mixed hash, strict-dynamic, nonce, report-sample, report-to directiveshash, strict-dynamic, nonce, report-sample, report-to directives: users show security, compatibility, missing feature pain that may indicate a product gap.
Security Header Generator · Edit: I noticed that hash, strict-dynamic, nonce, report-sample directives are also missing. mixed Menu item “Security Headers” not visibleMenu item “Security Headers” not visible: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Menu item “Security Headers” not visible WordPress version: 6.6.1-de_DE Security Header Generator version: 5.1.29 Themes: “Responsive” on one website, “ExS Medic” on two other websites Problem: After logging into my three WordPress self-hosted websites as an administrator, the “Security Headers” menu item in the left menu is no longer visible. mixed Strict-Transport-SecurityStrict-Transport-Security: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Strict-Transport-Security Hi I’m working through a pen test report and some file paths have been flagged as not returning a Strict-Transport-Security. mixed Bypass Vulnerability vulnerability foundBypass Vulnerability vulnerability found: users show security, bugs, performance pain that may indicate a product gap.
Restricted Site Access · Bypass Vulnerability vulnerability found It would be super if the Dev’s would address this vulnerability. mixed NothingNothing: users show security, missing feature, support pain that may indicate a product gap.
Security Header Generator · Nothing Hi Thank you for the free CSP generator plugin however, seems it did not work I installed the plugin, login to root and move the website’s root folder, run the command, >> Success Everyting is ok, clear cache, check at securityheaders.com then nothing You didn’t have any documents for users, no FAQ too. mixed Error message on loading siteError message on loading site: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Error message on loading site I just installed your plugin and after a few minutes of reading and testing everything seems to work fine. mixed Error message in a special caseError message in a special case: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Error message in a special case Today I came across a special error message: WordPress-Version 6.1.1 Aktives Theme: Twenty Seventeen (Version 3.1) Aktuelles Plugin: Security Header Generator (Version 3.6.02) PHP-Version 8.0.28 Ein Fehler vom Typ E_ERROR wurde in der Zeile 701 der Datei /homepage/wp-content/plugins/security-header-generator/work/inc/kcp-cspge mixed Undefined array key “apply_child_override”Undefined array key “apply_child_override”: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Undefined array key “apply_child_override” When I updated the Kinsta server to PHP version to 8.3, I got bombarded of this error. mixed Content Security Headers – setting valuesContent Security Headers – setting values: users show security, bugs, missing feature pain that may indicate a product gap.
Security Header Generator · Content Security Headers – setting values Hi, how do I set Content-Security-Policy: default-src ‘self’ example.com *.example.com? complaint Fatal ErrorFatal Error: users show bugs, compatibility, setup pain that may indicate a product gap.
Press Permit Access Codes · Fatal Error When I go to create a new access code, I get this: Fatal error: Call to undefined function pp_get_groups() in ….\www.whoof.dev\wp-content\plugins\permit-press-access-codes\press-permit-access-codes.php on line 56 https://wordpress.org/plugins/permit-press-access-codes/ When I go to create a new access code, I get this: Fatal error: Call to undefi complaint Security vulnerabilitySecurity vulnerability: users show security, compatibility, missing feature pain that may indicate a product gap.
AutoCHMOD · Security vulnerability Hi! complaint Plugin throwing fatal errorPlugin throwing fatal error: users show bugs, compatibility, support pain that may indicate a product gap.
Access · Plugin throwing fatal error Hey there, I was about to try out your plugin, but upon activation it triggered a fatal error like this: Parse error: syntax error, unexpected T_FUNCTION in /www/htdocs/w011a15a/wp-content/plugins/access/access.php on line 12 Can you help me out on this :)? question Do you want to force downloads?Do you want to force downloads?: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · MIME type is correct but the issue is on their end. mixed CLI command generates errorCLI command generates error: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · CLI command generates error I used WinSCP to run the CLI command “wp csp generate” and it appears to start working before generating the error “invalid file ID”. mixed Permissions Policy DirectivesPermissions Policy Directives: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Permissions Policy Directives Hello Kevin, I have WordPress 6.8.1 with PHP 8.3 and am using securityheaders.com to obtain a report on the site. mixed Attempt to read property “ID” on null in kcp-cspgen-cli-process.phpAttempt to read property “ID” on null in kcp-cspgen-cli-process.php: users show security, bugs, compatibility pain that may indicate a product gap.
Security Header Generator · Attempt to read property “ID” on null in kcp-cspgen-cli-process.php I’m using wordpress 6.3.1 with Security Header Generator 4.0.01, when i run “wp csp generate” i get the following error: Warning: We have started processing the site. mixed blob:blob:: users show security, compatibility, support pain that may indicate a product gap.
Security Header Generator · child-src is not deprecated as of yet, and still has full browser support: https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy/child-src I do see some articles showing it was, however, it has since been un-deprecated as of December 2018 Interestingly enough though, W3C has marked frame-src as deprecated… as of July 31st: https:/ complaint Version 2.4.1 caused an error on the WooCommerce login screen: /index.php/my-acAfter updating, customers immediately lost access to WooCommerce accounts needed to place orders, so the user reverted while a hotfix was planned.
PublishPress Capabilities – User Role Editor, Access Permissions, User Capabilities, Admin Menus · my customers immediately lost access to their WooCommerce accounts to place orders complaint Cart is suddenly emptying for custom user roles since the latest update 3.2.19After a plugin update, logged-in customers with custom roles saw empty carts, creating lost sales for the client's store.
Members – Membership & User Role Editor Plugin · the client is losing sales complaint Data Access Levels questionData Access Levels question: users show security, missing feature pain that may indicate a product gap.
Data access levels · and Admin has the level value is 100, all the page and post I’ve created, they show the access level is 100. complaint ExcellentExcellent: users show security pain that may indicate a product gap.
Security Header Generator · Excellent Works perfectly. mixed Redirect to Login instead of 404?Redirect to Login instead of 404?: users show security, missing feature pain that may indicate a product gap.
WP JV Post Reading Groups · This Plugin is working perfectly! complaint Publish Pages Reverting to DraftPublished pages reverted to draft after using undo with multiple PublishPress Pro plugins, causing production publishing issues.
PublishPress Permissions: Control User Access for Posts, Pages, Categories, Tags · This is actually causing production issues for us. mixed Great but has security vulnerabilityGreat but has security vulnerability: users show security pain that may indicate a product gap.
AutoCHMOD · Great but has security vulnerability It’s a great plugin. complaint Bug report: media permission issuePublishPress Permissions had a media link autocomplete loophole that exposed restricted media references, and the vendor fixed it quickly.
PublishPress Permissions: Control User Access for Posts, Pages, Categories, Tags · Unauthorized users can still see blocked medias complaint WordPress 6.9 non-Admin users cannot edit pages.After WordPress 6.9, non-admin users cannot view or edit pages until PublishPress Permissions releases a compatibility fix.
PublishPress Permissions: Control User Access for Posts, Pages, Categories, Tags · non-admin users that should have permission to view/edit pages cannot view or edit them