no-unsafe-inline
No unsafe-inline
No unsafe-inline helps you to build a Content Security Policy avoiding to use 'unsafe-inline' and 'unsafe-hashes'.
Proof Health
Open evidenceCommercial opportunities need traceable source links before they are treated as build-worthy.
68.0% of this page's analysis has direct source links.
0 rows here require auditable proof before promotion.
0 rows have source counts but still need direct links.
Related Opportunities
3 marketsSource Evidence
Open evidence explorerCompatibility with caching & JS/CSS optimization plugins: users show security, bugs, compatibility pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsCSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess: users show security, bugs, compatibility pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsGoogle youTube, reCaptcha integrity failure: users show security, bugs, support pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsproblems with no-unsafe .js: users show security, bugs, missing feature pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsFatal error after upgrading to v1.2.3: users show bugs, compatibility, migration pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsTrustedHTML throws an error in no-unsafe-inline-fix-style.js: users show security, bugs, compatibility pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsEnable tag capture only on frontend: users show security, bugs, missing feature pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsConcerns about nginx deployment: users show bugs, support, setup pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsCSP Headers not loading POST PLUGIN UPDATE: users show security, bugs, support pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsCSP Blocks no-unsafe-inline-fix-style.min.js: users show security, bugs, support pain that may indicate a product gap.
Buyer: agencies, multisite operators, and maintenance teams · Wedge: surface multisite update risk, network drift, reporting gaps, and client-site exceptionsCompetitor Context
6 shownRepeated Themes
0 shownNo repeated plugin-level themes have been generated yet.
Collected Signals
20 shown from 35 collectedConcerns about nginx deployment: users show bugs, support, setup pain that may indicate a product gap.
Evidence: Kudos to you for trying to resolve an issue that should really be of top concern to the entire WordPress ecosystem!Need to View/Copy Generated CSP: users show support, setup pain that may indicate a product gap.
Evidence: Need to View/Copy Generated CSP I am a low skilled user seeking to make my site (sturbridgecapital.com) compliant with expectations of external scanners such as internet.nl which push me to have a very strict CSP.Problem with upgrade to 1.3.0: users show bugs, compatibility, setup pain that may indicate a product gap.
Evidence: Operating System: Linux Web Server: Apache WordPress Version: 6.9.4 PHP Version: 8.5.2 No unsafe-inline Version: 1.3.0 libxml Version: 20914 PHP extensions: +———–+———-+———–+ | extension | version | status | +———–+———-+———–+ | ctype | 8.5.2 | installed | | date | 8.5.2 | installed | | dom | 20031129 | installed | | filter | 8.5.2 | installed | | hash | 8.5.2Google youTube, reCaptcha integrity failure: users show security, bugs, support pain that may indicate a product gap.
Evidence: Google youTube, reCaptcha integrity failure reCaptcha error Failed to find a valid digest in the ‘integrity’ attribute for resource ‘ https://www.google.com/recaptcha/api.js?hl=en&ver=6.9.1#038;render=explicit’ ; with computed SHA-256 integrity ‘k14ryYrM1KYcKsCdkuqoQDoGn480m4fP1lZEZmaICo8=’.How to add other headers to the CSP: users show security, missing feature pain that may indicate a product gap.
Evidence: How to add other headers to the CSP When I do a test I noticed that security headers sees the CSP but not the other type of headers i.e.SHA256 not loading: users show bugs, missing feature, support pain that may indicate a product gap.
Evidence: I am not sure if I have a plugin problem or a cache issue.Activating the plugin does nothing: users show bugs, compatibility, performance pain that may indicate a product gap.
Evidence: Also I have noticed that enabling the plugin does not create any tables in the database, I don’t know if this is normal.Fatal error after upgrading to v1.2.3: users show bugs, compatibility, migration pain that may indicate a product gap.
Evidence: Fatal error after upgrading to v1.2.3 Hi, Following an update to v1.2.3, my sites are down with the following error : Fatal error: Uncaught TypeError: Cannot assign __PHP_Incomplete_Class to property Rubix\ML\Classifiers\KNearestNeighbors::$kernel of type Rubix\ML\Kernels\Distance\Distance in F:\apps\www.test.com\wp-content\plugins\no-unsafe-inline\vendor\ruFatal error when activating the plugin.: users show bugs, compatibility pain that may indicate a product gap.
Evidence: Fatal error when activating the plugin.Problem with recaptcha during capture phase: users show security, bugs pain that may indicate a product gap.
Evidence: Problem with recaptcha during capture phase Hi, I have just started the capture phase.Cookie Banner Not Displaying When Test CSP Policy is Enabled (No Errors Logged): users show bugs, support pain that may indicate a product gap.
Evidence: Cookie Banner Not Displaying When Test CSP Policy is Enabled (No Errors Logged) I’m having trouble with the Enzuzo cookie consent banner on my site.TrustedHTML throws an error in no-unsafe-inline-fix-style.js: users show security, bugs, compatibility pain that may indicate a product gap.
Evidence: TrustedHTML throws an error in no-unsafe-inline-fix-style.js One of my plugins is loading reCAPTCHA, which is throwing an e.replace is not a function error in the no-unsafe-inline-fix-style.min.js script, relating to reCAPTCHA trying to add its badge HTML.External & inline always “no items” found: users show bugs, missing feature, support pain that may indicate a product gap.
Evidence: Is there anything I might be missing or any known issues that could prevent the plugin from detecting the inline scripts and external sources?Error: users show bugs, compatibility, support pain that may indicate a product gap.
Evidence: Error When I enable tag capture, I get the following error: Fatal error: Uncaught Rubix\ML\Exceptions\RuntimeException: Estimator has not been trained.Enabled report-only mode, but nothing happened: users show setup pain that may indicate a product gap.
Evidence: But after I installed it to live site – nothing basically happened after I activated it with read-only mode.CSP Blocks no-unsafe-inline-fix-style.min.js: users show security, bugs, support pain that may indicate a product gap.
Evidence: CSP Blocks no-unsafe-inline-fix-style.min.js Hi, First of all, thank you for this plugin, it has helped us easily manage the CSP headers.CSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess: users show security, bugs, compatibility pain that may indicate a product gap.
Evidence: CSP Issue in WordPress with No Unsafe Inline Plugin & .htaccess Hello everyone, I’m experiencing an issue with Content Security Policy (CSP) in WordPress while using the No Unsafe Inline plugin.Compatibility with caching & JS/CSS optimization plugins: users show security, bugs, compatibility pain that may indicate a product gap.
Evidence: Compatibility with caching & JS/CSS optimization plugins Hi, I’m wondering if some caching & JS/CSS optimization plugins are known to work when “No unsafe-inline” plugin is enabled?disable style-src nonce: neutral conversation with limited structured signal.
Evidence: disable style-src nonce I cannot seem to disable style-src nonce even though it’s set to none (it was set to nonce). This topic was modified 1 year, 4 months ago by fuzzy21 . I cannot seem to disable style-src nonce even though it’s set to none (it was set to nonce). This topic was modified 1 year, 4 months ago by fuzzy21 .cannot disable noncing: users show bugs, setup pain that may indicate a product gap.
Evidence: We have a lot of base rules we setup.