Title: CSP Friendly Security
Author: Pascal CESCATO
Published: <strong>21. April 2022</strong>
Last modified: 1. Januar 2026

---

Plugins durchsuchen

![](https://ps.w.org/csp-antsst/assets/banner-772x250.png?rev=2712423)

![](https://ps.w.org/csp-antsst/assets/icon-128x128.png?rev=2712423)

# CSP Friendly Security

 Von [Pascal CESCATO](https://profiles.wordpress.org/pcescato/)

[Herunterladen](https://downloads.wordpress.org/plugin/csp-antsst.1.5.2.zip)

 * [Details](https://de.wordpress.org/plugins/csp-antsst/#description)
 * [Rezensionen](https://de.wordpress.org/plugins/csp-antsst/#reviews)
 *  [Installation](https://de.wordpress.org/plugins/csp-antsst/#installation)
 * [Entwicklung](https://de.wordpress.org/plugins/csp-antsst/#developers)

 [Support](https://wordpress.org/support/plugin/csp-antsst/)

## Beschreibung

Adds a CSP header compatible with most WP plugins without breaking styles.

## Installation

 * Extract the zip file and drop the contents in wp-content/plugins/ or install 
   via dashboard.
 * Activate the plugin. No settings required.

## FAQ

### Is there something to do after install?

Just activate it!

## Rezensionen

![](https://secure.gravatar.com/avatar/f50bbf43bd170e32ee9e71eabb62a981cd6af5c947783b2af93c21554bacbea6?
s=60&d=retro&r=g)

### 󠀁[Great plugin](https://wordpress.org/support/topic/great-plugin-37270/)󠁿

 [amanandhishoe](https://profiles.wordpress.org/amanandhishoe/) 24. Juli 2023

I downloaded this plugin and modified it for my site. I would recommend doing that.
The plugin hooks into the ‚template_redirect‘ hook. At that point the source for
the page has been generated by themes and plugins and is ready to be sent. The plugin
looks through the generated source and makes nonces for all inline scripts and styles.
It modifies the source so the inline scripts and styles have a nonce=’some-nonce‘
statement in them. It creates a Content-Security-Policy which includes those nonces.
However, each site has its own CSP needs, and so modifying the plugin to tailor 
the CSP to your site is not that difficult to do. That is what I have done.

![](https://secure.gravatar.com/avatar/9b95bfa4d1616d47a8ecea5e0edbd6be48a8db11943e7b3cea85f3849dfff88d?
s=60&d=retro&r=g)

### 󠀁[total cache compatibility issues](https://wordpress.org/support/topic/total-cache-compatibility-issues/)󠁿

 [hayobethlehem](https://profiles.wordpress.org/hayobethlehem/) 15. September 2022

doesn’t seem to work properly with w3tc. hope it will get updated at some point.

![](https://secure.gravatar.com/avatar/a377c1c28361c49b0ca776512739f3c7dc746687b66385fc0144493475609335?
s=60&d=retro&r=g)

### 󠀁[Could be better](https://wordpress.org/support/topic/could-be-better-53/)󠁿

 [esadc](https://profiles.wordpress.org/esadc/) 8. September 2022

The plugin works as advertised however, it does not let you modify the CSP header
resulting in a less than ideal CSP header. The header this plugin serves provides
no protection against clickjacking and allows all external scripts.

![](https://secure.gravatar.com/avatar/5146f0764e00f8116c4d6c0e8af7d77da8aeba106cf2211a380a787fc18855eb?
s=60&d=retro&r=g)

### 󠀁[Satisfied!](https://wordpress.org/support/topic/satisfied-104/)󠁿

 [OkorieWare](https://profiles.wordpress.org/okorieware/) 14. Juli 2022

This is the most ’straight to the point‘ CSP tool that I’ve found. So far, so go.

 [ Alle 4 Rezensionen lesen ](https://wordpress.org/support/plugin/csp-antsst/reviews/)

## Mitwirkende und Entwickler

„CSP Friendly Security“ ist Open-Source-Software. Folgende Menschen haben an diesem
Plugin mitgewirkt:

Mitwirkende

 *   [ Pascal CESCATO ](https://profiles.wordpress.org/pcescato/)

[Übersetze „CSP Friendly Security“ in deine Sprache.](https://translate.wordpress.org/projects/wp-plugins/csp-antsst)

### Interessiert an der Entwicklung?

[Durchstöbere den Code](https://plugins.trac.wordpress.org/browser/csp-antsst/),
sieh dir das [SVN-Repository](https://plugins.svn.wordpress.org/csp-antsst/) an 
oder abonniere das [Entwicklungsprotokoll](https://plugins.trac.wordpress.org/log/csp-antsst/)
per [RSS](https://plugins.trac.wordpress.org/log/csp-antsst/?limit=100&mode=stop_on_copy&format=rss).

## Änderungsprotokoll

#### 1.5.1

 * Fixed plugin header for WP validation
 * Added short description

## Meta

 *  Version **1.5.2**
 *  Zuletzt aktualisiert **vor 4 Monaten**
 *  Aktive Installationen **200+**
 *  WordPress-Version ** 5.9 oder höher **
 *  Getestet bis **6.9.4**
 *  PHP-Version ** 7.3 oder höher **
 *  Sprache
 * [English (US)](https://wordpress.org/plugins/csp-antsst/)
 * Schlagwörter
 * [content security policy](https://de.wordpress.org/plugins/tags/content-security-policy/)
   [csp](https://de.wordpress.org/plugins/tags/csp/)[Security Headers](https://de.wordpress.org/plugins/tags/security-headers/)
 *  [Erweiterte Ansicht](https://de.wordpress.org/plugins/csp-antsst/advanced/)

## Bewertungen

 3.5 von 5 Sternen.

 *  [  2 5-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/csp-antsst/reviews/?filter=5)
 *  [  0 4-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/csp-antsst/reviews/?filter=4)
 *  [  1 3-Sterne-Rezension     ](https://wordpress.org/support/plugin/csp-antsst/reviews/?filter=3)
 *  [  0 2-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/csp-antsst/reviews/?filter=2)
 *  [  1 1-Sterne-Rezension     ](https://wordpress.org/support/plugin/csp-antsst/reviews/?filter=1)

[Your review](https://wordpress.org/support/plugin/csp-antsst/reviews/#new-post)

[Alle Rezensionen anzeigen](https://wordpress.org/support/plugin/csp-antsst/reviews/)

## Mitwirkende

 *   [ Pascal CESCATO ](https://profiles.wordpress.org/pcescato/)

## Support

Möchtest du etwas mitteilen? Brauchst du Unterstützung?

 [Support-Forum anzeigen](https://wordpress.org/support/plugin/csp-antsst/)