WPIntell

csp-antsst

CSP Friendly Security

Adds a CSP header compatible with most WP plugins without breaking styles.

200
3.2K
3.5
0
5
2

Proof Health

Open evidence

Commercial opportunities need traceable source links before they are treated as build-worthy.

31 / 48 rows with source links

64.6% of this page's analysis has direct source links.

0 build-decision rows missing links

0 rows here require auditable proof before promotion.

17 rows with no attached evidence

0 rows have source counts but still need direct links.

Download Momentum

180 days
95 129 -26.4% 665

Source Evidence

Open evidence explorer
complaint support · high severity · relevance 0.79
Regeneration for every page

Regeneration for every page: users show security pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Regeneration for every page Hi, great plugin!!!
praise review · high severity · relevance 0.6
Great plugin

Great plugin: users show security, compatibility pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Great plugin I downloaded this plugin and modified it for my site.
complaint support · medium severity · relevance 0.81
Issue with wp total cache?

Issue with wp total cache?: users show bugs, compatibility, setup pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Issue with wp total cache?
complaint support · medium severity · relevance 0.81
Is this plugin dead?

Is this plugin dead?: users show missing feature, support, setup pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
A year since last update and no replies to support comments?
complaint support · medium severity · relevance 0.69
works on chrome not on safari

works on chrome not on safari: users show support pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
works on chrome not on safari HI, Thanks for your plugin.
complaint review · medium severity · relevance 0.69
total cache compatibility issues

total cache compatibility issues: users show bugs pain that may indicate a product gap.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
total cache compatibility issues doesn’t seem to work properly with w3tc.
mixed review · medium severity · relevance 0.63
Could be better

Could be better: users praise reliable, which suggests what competitors already do well.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Could be better The plugin works as advertised however, it does not let you modify the CSP header resulting in a less than ideal CSP header.
praise review · medium severity · relevance 0.38
Satisfied!

Satisfied!: praise conversation with limited structured signal.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
Satisfied! This is the most ‘straight to the point’ CSP tool that I’ve found. So far, so go. This is the most ‘straight to the point’ CSP tool that I’ve found. So far, so go.
neutral support · medium severity · relevance 0.38
CSP-ANTS&ST to be updated?

CSP-ANTS&ST to be updated?: neutral conversation with limited structured signal.

Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
Proof Blocked card complete trust and abuse-prevention operations Evidence linked to opportunity
CSP-ANTS&ST to be updated? Will the CSP-ANTS&ST plugin be updated? Something like this plugin should be standard with WordPress, I believe. It has been recommended for years that websites include nonces for scripts for CSP. And yet, WordPress provides nothing. Some scripts are somehow avoiding the insertion of the nonce tag, how can this be fixed? An update

Competitor Context

6 shown
Cookies and Content Security Policy praise owner · intel 72.7 · weakness 49.0
praise owner
1 unresolved support thread(s) 7 collected complaint signal(s) security compatibility 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and compliance-sensitive marketing teams · Wedge: audit GDPR consent state, tracking disclosures, cookie behavior, and compliance drift
Content Security Policy Manager praise owner · intel 71.8 · weakness 57.3
praise owner
stale update history 6 collected complaint signal(s) support bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
GD Security Headers praise owner · intel 67.6 · weakness 47.0
praise owner
16 collected complaint signal(s) missing feature security 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
No unsafe-inline praise owner · intel 64.4 · weakness 46.0
praise owner
1 unresolved support thread(s) 18 collected complaint signal(s) bugs security 2 source links Proof Blocked Evidence linked to opportunity
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptions
Security Header Generator praise owner · intel 51.5 · weakness 24.7
praise owner
2 collected complaint signal(s) security bugs 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alerts
HTTP Security Header praise owner · intel 48.8 · weakness 22.3
praise owner
2 collected complaint signal(s) missing feature support 2 source links Proof Blocked Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts

Repeated Themes

0 shown

No repeated plugin-level themes have been generated yet.

Collected Signals

9 shown from 9 collected
neutral CSP-ANTS&ST to be updated? support · 2024-12-26T22:14:40+00:00 · medium severity · content security policy

CSP-ANTS&ST to be updated?: neutral conversation with limited structured signal.

Evidence: CSP-ANTS&ST to be updated? Will the CSP-ANTS&ST plugin be updated? Something like this plugin should be standard with WordPress, I believe. It has been recommended for years that websites include nonces for scripts for CSP. And yet, WordPress provides nothing. Some scripts are somehow avoiding the insertion of the nonce tag, how can this be fixed? An update
trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
praise Great plugin (5 stars) review · 2023-07-24T15:56:11+00:00 · high severity · content security policy

Great plugin: users show security, compatibility pain that may indicate a product gap.

Evidence: Great plugin I downloaded this plugin and modified it for my site.
security compatibility quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint Is this plugin dead? support · 2023-05-09T17:25:45+00:00 · medium severity · content security policy

Is this plugin dead?: users show missing feature, support, setup pain that may indicate a product gap.

Evidence: A year since last update and no replies to support comments?
missing feature support setup trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint Regeneration for every page support · 2023-02-16T19:19:02+00:00 · high severity · content security policy

Regeneration for every page: users show security pain that may indicate a product gap.

Evidence: Regeneration for every page Hi, great plugin!!!
security quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint works on chrome not on safari support · 2023-01-11T08:34:39+00:00 · medium severity · content security policy

works on chrome not on safari: users show support pain that may indicate a product gap.

Evidence: works on chrome not on safari HI, Thanks for your plugin.
support reliable quality trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint total cache compatibility issues (1 star) review · 2022-09-15T11:29:24+00:00 · medium severity · content security policy

total cache compatibility issues: users show bugs pain that may indicate a product gap.

Evidence: total cache compatibility issues doesn’t seem to work properly with w3tc.
bugs cache trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
mixed Could be better (3 stars) review · 2022-09-08T04:03:41+00:00 · medium severity · content security policy

Could be better: users praise reliable, which suggests what competitors already do well.

Evidence: Could be better The plugin works as advertised however, it does not let you modify the CSP header resulting in a less than ideal CSP header.
reliable trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
complaint Issue with wp total cache? support · 2022-08-17T13:18:45+00:00 · medium severity · content security policy

Issue with wp total cache?: users show bugs, compatibility, setup pain that may indicate a product gap.

Evidence: Issue with wp total cache?
bugs compatibility setup cache trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts
praise Satisfied! (5 stars) review · 2022-07-14T08:43:21+00:00 · medium severity · content security policy

Satisfied!: praise conversation with limited structured signal.

Evidence: Satisfied! This is the most ‘straight to the point’ CSP tool that I’ve found. So far, so go. This is the most ‘straight to the point’ CSP tool that I’ve found. So far, so go.
trust and abuse-prevention operations Proof Blocked card complete Evidence linked to opportunity
Buyer: site owners, agencies, and maintenance teams · Wedge: test security headers lockouts, bot/spam defenses, risky access changes, and incident alerts