PluginScout

Content Security Policy Manager — WordPress Security Plugin

by Patrick Sletvold · WordPress.org page

v1.2.1 Tested up to WP 6.1.12 PHP 7.2+

Content Security Policy Manager has 2,000+ active installs on WordPress.org and 35,552 downloads all time. We have tracked it since September 4, 2026; download trends appear after 30 days of data. The last update was on August 9, 2022, tested up to WordPress 6.1.12.

Content Security Policy Manager at a glance

Active installs
2,000+
Total downloads
35,552
Downloads, last 30 days
available after 30 days of tracking
30-day growth
tracking since September 4, 2026

Is Content Security Policy Manager well maintained?

Support threads resolved
No open threads
nothing waiting on the WordPress.org forum
WordPress compatibility
Behind
tested up to WordPress 6.1.12, not yet with the current 7.1

Content Security Policy Manager reviews and ratings

6 reviews on WordPress.org, with the most recent ones as their authors posted them.

4.3 out of 5

6 reviews

5★
5
4★
0
3★
0
2★
0
1★
1
  • Report To not working

    Hello, Since report-uri is no longer recommended anymore, I need to use report-to to send CSP reports. But for reason, it doesn't send reports with report-to. My CSP settings are as follows: In Policy: report-to filed, I filled in csp-endpoint , in Frontend Policy Report-To Header field, I filled in the following JSON data { "group": "csp-endpoint", "max_age": 10886400, "endpoints": [ { "url": "{CSP REPORT ENDPOINT}" } ] } After saving changes in the CMS, all the commas disappeared in Frontend Policy Report-To Header field. { "group": "csp-endpoint" "max_age": 10886400 "endpoints": [ { "url": "{CSP REPORT ENDPOINT}" } ] } I am wondering if you can help to take a look at it, thanks! Note: I have no problem with report-uri.

    ningmorris
  • kills all CSS styles

    As soon as I leave the backend the view of my side is without any CSS. Only the plain HTML.

    rintelengrafik
  • Very helpful and useful plugin. do you provide filters ?

    We are really happy with this plugin.im wondering if you provide a filter so i can merge some dynamic 'nonce-xx' to the policy header. this could be very very useful.

    buzibuzi
  • I like all the options for logged-in versus anonymous and report-only

    This plugin is well thought out and does what I need it to. It has also helped me troubleshoot other website's CSP that wasn't working correctly, and the documentation is solid if brief.

    Jason Robinson
  • Extraordinaire !

    Ce plugin m;a fait gagner des heures de travail.

    jeebeezebee
  • Great plugin to manage CSP

    Great plugin, thank you.

    c3idesign

Content Security Policy Manager alternatives

Plugins that solve the same problem, ranked by how closely they overlap with Content Security Policy Manager.

Details

Plugin for configuring Content Security Policy headers for your site. Allows different CSP headers for admin, logged inn frontend and regular visitors

The full description, screenshots and every review live on the WordPress.org page.

Rankings Content Security Policy Manager competes in

Tags

  • content security policy
  • csp
  • security
  • Security Headers
  • xss

More from Patrick Sletvold

Version
1.2.1
Last updated
Aug 9, 2022
First published
Jul 21, 2020
Requires WordPress
4.6
Tested up to
6.1.12
Requires PHP
7.2
Pricing
Free on WordPress.org

Content Security Policy Manager FAQ

How many active installs does Content Security Policy Manager have?

WordPress.org reports 2,000+ active installs for Content Security Policy Manager as of September 7, 2026.

Is Content Security Policy Manager still maintained?

The last release was on August 9, 2022, more than a year ago. WordPress.org shows a warning on plugins that go this long without an update.

Is Content Security Policy Manager free?

Content Security Policy Manager is free to install from WordPress.org. Many plugins also sell a paid version or add-ons.