WPIntell

Market

unsafe-inline

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

37 / 37 rows with source links

100.0% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

0 rows with no attached evidence

0 rows have source counts but still need direct links.

Competitors

1 shown
No unsafe-inline 200 installs · 5.0
praise owner
-96.6%momentum 46.0weakness 18/5pain/praise

Pain still appears around bugs, security despite praise for value, quality.

complaint Compatibility with caching & JS/CSS optimization plugins

Compatibility with caching & JS/CSS optimization plugins: users show security, bugs, compatibility pain that may indicate a product gap.

No unsafe-inline · Compatibility with caching & JS/CSS optimization plugins Hi, I’m wondering if some caching & JS/CSS optimization plugins are known to work when “No unsafe-inline” plugin is enabled?
complaint CSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess

CSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess: users show security, bugs, compatibility pain that may indicate a product gap.

No unsafe-inline · CSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess Hello everyone, I’m experiencing an issue with Content Security Policy (CSP) in WordPress while using the No Unsafe Inline plugin.
complaint Google youTube, reCaptcha integrity failure

Google youTube, reCaptcha integrity failure: users show security, bugs, support pain that may indicate a product gap.

No unsafe-inline · Google youTube, reCaptcha integrity failure reCaptcha error Failed to find a valid digest in the ‘integrity’ attribute for resource ‘ https://www.google.com/recaptcha/api.js?hl=en&ver=6.9.1#038;render=explicit’ ; with computed SHA-256 integrity ‘k14ryYrM1KYcKsCdkuqoQDoGn480m4fP1lZEZmaICo8=’.
complaint problems with no-unsafe .js

problems with no-unsafe .js: users show security, bugs, missing feature pain that may indicate a product gap.

No unsafe-inline · problems with no-unsafe .js I’m having problems getting this one to work: no-unsafe-inline-fix-style.min.js?ver=1.2.2:2 [Report Only] Refused to apply inline style because it violates the following Content Security Policy directive: “style-src https://pro.fontawesome.com ‘nonce-f729f65c7d6625f00e4266825df72b094d37e64c6e7ad38d8590bc6deab4c949’ ‘report-sample'
complaint Fatal error after upgrading to v1.2.3

Fatal error after upgrading to v1.2.3: users show bugs, compatibility, migration pain that may indicate a product gap.

No unsafe-inline · Fatal error after upgrading to v1.2.3 Hi, Following an update to v1.2.3, my sites are down with the following error : Fatal error: Uncaught TypeError: Cannot assign __PHP_Incomplete_Class to property Rubix\ML\Classifiers\KNearestNeighbors::$kernel of type Rubix\ML\Kernels\Distance\Distance in F:\apps\www.test.com\wp-content\plugins\no-unsafe-inline\vendor\ru
mixed TrustedHTML throws an error in no-unsafe-inline-fix-style.js

TrustedHTML throws an error in no-unsafe-inline-fix-style.js: users show security, bugs, compatibility pain that may indicate a product gap.

No unsafe-inline · TrustedHTML throws an error in no-unsafe-inline-fix-style.js One of my plugins is loading reCAPTCHA, which is throwing an e.replace is not a function error in the no-unsafe-inline-fix-style.min.js script, relating to reCAPTCHA trying to add its badge HTML.
mixed Enable tag capture only on frontend

Enable tag capture only on frontend: users show security, bugs, missing feature pain that may indicate a product gap.

No unsafe-inline · The plugin ‘Settings’ tab allows us to disable enforcing CSP-policy in WordPress admin.
complaint Concerns about nginx deployment

Concerns about nginx deployment: users show bugs, support, setup pain that may indicate a product gap.

No unsafe-inline · Kudos to you for trying to resolve an issue that should really be of top concern to the entire WordPress ecosystem!
complaint CSP Headers not loading POST PLUGIN UPDATE

CSP Headers not loading POST PLUGIN UPDATE: users show security, bugs, support pain that may indicate a product gap.

No unsafe-inline · In spite of have turned on the CSP Protection, all the CSP Checkers like https://securityheaders.com/ https://observatory.mozilla.org/ https://csp-evaluator.withgoogle.com/ https://csper.io/evaluator gives out error “Cannot fetch CSP headers!” or “unable to evaluate url: no policies found at URL” The page I need help with: [ log in to see the link] Hi, Post
complaint CSP Blocks no-unsafe-inline-fix-style.min.js

CSP Blocks no-unsafe-inline-fix-style.min.js: users show security, bugs, support pain that may indicate a product gap.

No unsafe-inline · CSP Blocks no-unsafe-inline-fix-style.min.js Hi, First of all, thank you for this plugin, it has helped us easily manage the CSP headers.
mixed Error

Error: users show bugs, compatibility, support pain that may indicate a product gap.

No unsafe-inline · Error When I enable tag capture, I get the following error: Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException: Estimator has not been trained.
mixed Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException

Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException: users show bugs, compatibility, support pain that may indicate a product gap.

No unsafe-inline · Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException Dear, I have a problem in website (Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException: Estimator has not been trained.
complaint Fatal error when activating the plugin.

Fatal error when activating the plugin.: users show bugs, compatibility pain that may indicate a product gap.

No unsafe-inline · Fatal error when activating the plugin.
complaint Problem with recaptcha during capture phase

Problem with recaptcha during capture phase: users show security, bugs pain that may indicate a product gap.

No unsafe-inline · Problem with recaptcha during capture phase Hi, I have just started the capture phase.
complaint Activating report-only mode crashes website on NGINX

Activating report-only mode crashes website on NGINX: users show bugs, missing feature pain that may indicate a product gap.

No unsafe-inline · Activating report-only mode crashes website on NGINX I enabled the report-only mode and the server immediately threw an error and my website went down, so I had to recover by renaming the plugin.
complaint How to add other headers to the CSP

How to add other headers to the CSP: users show security, missing feature pain that may indicate a product gap.

No unsafe-inline · How to add other headers to the CSP When I do a test I noticed that security headers sees the CSP but not the other type of headers i.e.
complaint admin pages blocked

admin pages blocked: users show security pain that may indicate a product gap.

No unsafe-inline · For example when we click on Posts: a11y.min.js?ver=d90eebea464f6c09bfd5:2 [Report Only] Refused to apply inline style because it violates the following Content Security Policy directive: “style-src https://pro.fontawesome.com https://kit.fontawesome.com ‘nonce-73f1a0225eff24895509f6431da3064f4495cc71f3b9c27f6f2a6371b1c7acc7’ ‘report-sample'”.
neutral default-src ‘self’; img-src *; media-src * data:;

default-src ‘self’; img-src *; media-src * data:;: users show security, bugs, compatibility pain that may indicate a product gap.

No unsafe-inline · default-src ‘self’; img-src *; media-src * data:; We are report only now, but it looks like the plugin is adding this x-content-security-policy: default-src ‘self’; img-src *; media-src * data:; to the header.
complaint Problem with upgrade to 1.3.0

Problem with upgrade to 1.3.0: users show bugs, compatibility, setup pain that may indicate a product gap.

No unsafe-inline · Operating System: Linux Web Server: Apache WordPress Version: 6.9.4 PHP Version: 8.5.2 No unsafe-inline Version: 1.3.0 libxml Version: 20914 PHP extensions: +———–+———-+———–+ | extension | version | status | +———–+———-+———–+ | ctype | 8.5.2 | installed | | date | 8.5.2 | installed | | dom | 20031129 | installed | | filter | 8.5.2 | installed | | hash | 8.5.2
mixed Activating the plugin does nothing

Activating the plugin does nothing: users show bugs, compatibility, performance pain that may indicate a product gap.

No unsafe-inline · Also I have noticed that enabling the plugin does not create any tables in the database, I don’t know if this is normal.
mixed style tag blacklisted; how to nonce?

style tag blacklisted; how to nonce?: users show bugs, compatibility, missing feature pain that may indicate a product gap.

No unsafe-inline · Issue: if the client is changing the image (which they often do), it looks like that tag block gets banned and has to manually be whitelisted again which is a big hassle and not preferred.
mixed SHA256 not loading

SHA256 not loading: users show bugs, missing feature, support pain that may indicate a product gap.

No unsafe-inline · I am not sure if I have a plugin problem or a cache issue.
complaint External & inline always “no items” found

External & inline always “no items” found: users show bugs, missing feature, support pain that may indicate a product gap.

No unsafe-inline · Is there anything I might be missing or any known issues that could prevent the plugin from detecting the inline scripts and external sources?
mixed Provide filter for api_support_integrity()

Provide filter for api_support_integrity(): users show bugs, missing feature, support pain that may indicate a product gap.

No unsafe-inline · Provide filter for api_support_integrity() I was having an issue where enabling the CSP policy was generating CORs errors for a third party script.
complaint Need to View/Copy Generated CSP

Need to View/Copy Generated CSP: users show support, setup pain that may indicate a product gap.

No unsafe-inline · Need to View/Copy Generated CSP I am a low skilled user seeking to make my site (sturbridgecapital.com) compliant with expectations of external scanners such as internet.nl which push me to have a very strict CSP.
complaint Cookie Banner Not Displaying When Test CSP Policy is Enabled (No Errors Logged)

Cookie Banner Not Displaying When Test CSP Policy is Enabled (No Errors Logged): users show bugs, support pain that may indicate a product gap.

No unsafe-inline · Cookie Banner Not Displaying When Test CSP Policy is Enabled (No Errors Logged) I’m having trouble with the Enzuzo cookie consent banner on my site.
complaint Enabled report-only mode, but nothing happened

Enabled report-only mode, but nothing happened: users show setup pain that may indicate a product gap.

No unsafe-inline · But after I installed it to live site – nothing basically happened after I activated it with read-only mode.
mixed Nonces to authorize inline scripts

Nonces to authorize inline scripts: users show support, setup pain that may indicate a product gap.

No unsafe-inline · Nonces to authorize inline scripts In the plugin description, you say, “You can use hashes or nonces to authorize inline scripts.” Does that mean this plugin will help set that up, or is it just a general statement that people can do this?
praise Excellent plugin

Excellent plugin: users show compatibility, missing feature, setup pain that may indicate a product gap.

No unsafe-inline · Excellent plugin Works like it says on the box.
praise Absolutely the best plugin for strict csp

Absolutely the best plugin for strict csp: users show support, setup pain that may indicate a product gap.

No unsafe-inline · Absolutely the best plugin for strict csp The only possible solution for those who want to adopt a stricted csp.
neutral cannot disable noncing

cannot disable noncing: users show bugs, setup pain that may indicate a product gap.

No unsafe-inline · We have a lot of base rules we setup.
praise Extremely useful plugin

Extremely useful plugin: users show missing feature pain that may indicate a product gap.

No unsafe-inline · Extremely useful plugin Not everything went smoothly, I had to abandon the Clearfy plugin and tinker with the settings, but it was worth it.
praise Exceeds Expectations

Exceeds Expectations: praise conversation with limited structured signal.

No unsafe-inline · Exceeds Expectations This plugin has a learning curve. And it demands patience. But the results exceed expectations. I used this plugin on a local server. I aimed to find Gutenberg Inline styles in (rendered) HTML. This plugin found the inline styles and several style attributes. This plugin has a learning curve. And it demands patience. But the results exce
praise The only plugin that can build a strict CSP

The only plugin that can build a strict CSP: users praise value, which suggests what competitors already do well.

No unsafe-inline · But these problems should go away with time.
neutral disable style-src nonce

disable style-src nonce: neutral conversation with limited structured signal.

No unsafe-inline · disable style-src nonce I cannot seem to disable style-src nonce even though it’s set to none (it was set to nonce). This topic was modified 1 year, 4 months ago by fuzzy21 . I cannot seem to disable style-src nonce even though it’s set to none (it was set to nonce). This topic was modified 1 year, 4 months ago by fuzzy21 .