csp-manager
Content Security Policy Manager
Plugin for configuring Content Security Policy headers for your site. Allows different CSP headers for admin, logged inn frontend and regular visitors
Proof Health
Open evidenceCommercial opportunities need traceable source links before they are treated as build-worthy.
68.4% of this page's analysis has direct source links.
0 rows here require auditable proof before promotion.
0 rows have source counts but still need direct links.
Related Opportunities
3 marketsSource Evidence
Open evidence explorerhow to fill sites: users show security, bugs, support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCustomize not working. This content is blocked. Contact the site owner to fix th: users show security, bugs, support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCSP in Firefox: users show security, bugs, missing feature pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsPlugin not activating: users show bugs, compatibility, missing feature pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCan’t get it working at all: users show bugs, performance, missing feature pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsProblems with caching: users show bugs, compatibility pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsno CSP for unlogged visitors: users show bugs, support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCSP Manager doesn’t seem to be working: users show support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsAdding nonce to rules: users show support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCSP For ‘Require Trusted Types’: users show support pain that may indicate a product gap.
Buyer: site owners, agencies, and maintenance teams · Wedge: test security lockouts, bot/spam defenses, risky access changes, and incident alertsCompetitor Context
6 shownRepeated Themes
0 shownNo repeated plugin-level themes have been generated yet.
Collected Signals
19 shown from 19 collectedA user asks whether the Content Security Policy Manager plugin is still supported after three years without updates and receives no answer.
Evidence: As it hasn’t had an update for 3 years I wanted to check.Customize not working. This content is blocked. Contact the site owner to fix th: users show security, bugs, support pain that may indicate a product gap.
Evidence: Contact the site owner to fix the issue.” I have CSP Manager Admin policy to Disabled.Report To not working: users show missing feature, support pain that may indicate a product gap.
Evidence: My CSP settings are as follows: In Policy: report-to filed, I filled in csp-endpoint , in Frontend Policy Report-To Header field, I filled in the following JSON data { "group": "csp-endpoint", "max_age": 10886400, "endpoints": [ { "url": "{CSP REPORT ENDPOINT}" } ] } After saving changes in the CMS, all the commas disappeared in Frontend Policy Report-To Heakills all CSS styles: complaint conversation with limited structured signal.
Evidence: kills all CSS styles As soon as I leave the backend the view of my side is without any CSS. Only the plain HTML. As soon as I leave the backend the view of my side is without any CSS. Only the plain HTML.Very helpful and useful plugin. do you provide filters ?: users show support pain that may indicate a product gap.
Evidence: Very helpful and useful plugin.Examples per directives?: users praise quality, which suggests what competitors already do well.
Evidence: That would be a very welcome addition, other than that excellent plugin 🙂 That would be a very welcome addition, other than that excellent plugin 🙂CSP Manager doesn’t seem to be working: users show support pain that may indicate a product gap.
Evidence: The page I need help with: [ log in to see the link] I’m trying to add a CSP rule to enable embedding content from player.streamguys.com in an iframe.I like all the options for logged-in versus anonymous and report-only: users show missing feature, support, setup pain that may indicate a product gap.
Evidence: I like all the options for logged-in versus anonymous and report-only This plugin is well thought out and does what I need it to.Plugin not activating: users show bugs, compatibility, missing feature pain that may indicate a product gap.
Evidence: my php version is – 7.2 and I have updated my PHP version to 7.4 and my WordPress Version is 5.9.Adding nonce to rules: users show support pain that may indicate a product gap.
Evidence: Adding nonce to rules Hi, does the plugin support using nonce ?Extraordinaire !: praise conversation with limited structured signal.
Evidence: Extraordinaire ! Ce plugin m;a fait gagner des heures de travail. Ce plugin m;a fait gagner des heures de travail.Problems with caching: users show bugs, compatibility pain that may indicate a product gap.
Evidence: I think the plugin works fine.no CSP for unlogged visitors: users show bugs, support pain that may indicate a product gap.
Evidence: Any help would be appreciated Mat Hi there, it’s quite strange but I don’t have any CSP setted in the headers when I’m not logged in.Can’t get it working at all: users show bugs, performance, missing feature pain that may indicate a product gap.
Evidence: Viewing source, clearing/bypassing cache I don’t see anything CSP added to the source.Great plugin to manage CSP: users praise quality, which suggests what competitors already do well.
Evidence: Great plugin to manage CSP Great plugin, thank you.how to fill sites: users show security, bugs, support pain that may indicate a product gap.
Evidence: how to fill sites I’m on the report only, had lists of errors from Sentry, but how do I fill the sites in the box?CSP in Firefox: users show security, bugs, missing feature pain that may indicate a product gap.
Evidence: CSP in Firefox In Firefox, I’m getting an error of Content Security Policy: The page’s settings blocked the loading of a resource at https://morgridge.org/news/page/2/ (“default-src”).Add frame-ancestors Policy: users show support pain that may indicate a product gap.
Evidence: The currently supported directives were chosen based on what I had a need for myself, but it makes sense to expand upon this.CSP For ‘Require Trusted Types’: users show support pain that may indicate a product gap.
Evidence: The currently supported directives were chosen based on what I had a need for myself, but it makes sense to expand upon this.