Signed Posts — WordPress Security Plugin
by Marc Armengou · WordPress.org page · Website
Signed Posts has fewer than 10 active installs on WordPress.org and 484 downloads all time. We have tracked it since September 4, 2026; download trends appear after 30 days of data. The last update was on March 7, 2026, tested up to WordPress 6.9.7.
Signed Posts at a glance
Is Signed Posts well maintained?
Features
The feature list from the plugin's own readme on WordPress.org, trimmed to the essentials.
- In-browser verification: The signature verification is done on the client side (in the visitor’s browser)
- Methods: OpenPGP (ASCII-armored detached signature) and DID (did:key, did:web) using Ed25519 detached JWS (b64=false)
- Source of trust: For OpenPGP, the author specifies the URL of their public key in their profile. For DID, the author sets their DID (did:key or did:web). For…
- Status block: An informative block is automatically added to the end of each signed article, showing the verification status (valid, invalid, or error)
- Author badge: The author name in posts is enhanced with an icon and KeyID/fingerprint text
Details
Signed Posts allows authors to sign posts, assuring content integrity. Signature verification proves post-signing alteration hasn't occurred.
The full description, screenshots and every review live on the WordPress.org page.
Rankings Signed Posts competes in
Tags
- did
- openpgp
- security
- signature
- verification
More from Marc Armengou
-
Security Hardener 200+ installs -
Clear Internal Search Button fewer than 10 installs -
Toys for Playground fewer than 10 installs -
PlugSeal fewer than 10 installs
- Version
- 0.5
- Last updated
- Mar 7, 2026
- First published
- Oct 4, 2025
- Requires WordPress
- 6.9
- Tested up to
- 6.9.7
- Requires PHP
- 8.2
- Pricing
- Free on WordPress.org
Signed Posts FAQ
What does Signed Posts do?
According to its WordPress.org readme, Signed Posts offers In-browser verification: The signature verification is done on the client side (in the visitor’s browser), Methods: OpenPGP (ASCII-armored detached signature) and DID (did:key, did:web) using Ed25519 detached JWS (b64=false), Source of trust: For OpenPGP, the author specifies the URL of their public key in their profile. For DID, the author sets their DID (did:key or did:web). For, Status block: An informative block is automatically added to the end of each signed article, showing the verification status (valid, invalid, or error) and Author badge: The author name in posts is enhanced with an icon and KeyID/fingerprint text.
How many active installs does Signed Posts have?
WordPress.org reports fewer than 10 active installs for Signed Posts as of September 7, 2026.
Is Signed Posts still maintained?
Yes. The last release was on March 7, 2026 and it is tested up to WordPress 6.9.7.
Is Signed Posts free?
Signed Posts is free to install from WordPress.org. Many plugins also sell a paid version or add-ons.