
內容簡介
Volixta SSL & Security Headers 外掛幫助 WordPress 網站擁有者輕鬆配置 HTTPS、管理 SSL 憑證、修正混合內容,並應用現代瀏覽器安全性,無需手動編輯敏感的伺服器檔案。
【主要功能】
• 申請 Let’s Encrypt ACME v2 憑證
• 自動檢查憑證續期
• HTTPS 設定與重定向
• 混合內容工具,包括前端檢查
• 安全標頭配置,如 HSTS 和 CSP
• 安全 Cookie 設定,保護 WordPress 認證
外掛標籤
開發者團隊
② 後台搜尋「Volixta SSL & Security Headers」→ 直接安裝(推薦)
📦 歷史版本下載
原文外掛簡介
Volixta SSL & Security Headers helps WordPress site owners configure HTTPS, manage SSL certificates, fix mixed content, and apply modern browser security without manually editing sensitive server files.
Use Volixta to request free Let’s Encrypt certificates, install supported certificates through hosting integrations, switch WordPress to HTTPS, configure 301 redirects, and verify the certificate that visitors actually receive.
Key features include:
Let’s Encrypt ACME v2 certificate requests with HTTP-01 validation.
Certificate installation for supported cPanel, Plesk, and DirectAdmin environments, plus downloadable files for manual installation.
Automatic renewal checks for eligible Volixta-managed production certificates.
HTTPS setup and redirects with guarded Apache/LiteSpeed .htaccess changes and Nginx guidance.
Mixed Content tools including frontend checks, Deep Scan, Live Fixer, and serialization-safe database cleanup.
Security Headers including HSTS, CSP, CSP Report-Only, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, COOP, COEP, and CORP.
Secure Cookies for WordPress authentication and PHP sessions with Secure, HttpOnly, and SameSite=Lax protection.
CSP Report-Only monitoring with capped local reports and rate limiting.
Safety Backups before managed .htaccess changes. wp-config.php backups are downloaded directly to your computer and are not stored by Volixta on the server.
Site Health integration for important SSL, HTTPS, redirect, cookie, and header checks.
Hosting-aware guidance for Apache, LiteSpeed, Nginx, reverse proxies, Cloudflare, localhost, and manual certificate workflows.
Volixta is designed to fail safely: it uses marked configuration blocks, verifies backups and file snapshots, and avoids overwriting unrelated .htaccess content.
Privacy
Volixta SSL & Security Headers does not include analytics, usage tracking, or visitor tracking.
The plugin stores the configuration required for enabled features inside your WordPress installation. When CSP Report-Only monitoring is enabled, Volixta stores a capped local history of CSP violation diagnostics. It does not store visitor IP addresses, user agents, referrers, or CSP script samples in that report history.
Some actions communicate with external services when you explicitly use features that require them. CSP violation monitoring uses a local WordPress REST endpoint and does not send those reports to a third-party reporting service.
Examples include:
Let’s Encrypt: certificate requests and ACME validation.
Hosting integrations: configured cPanel, Plesk, or DirectAdmin connections used for certificate installation.
Only information required to perform the requested operation is sent to those services.
Localization
Text domain: volixta-ssl-security-headers
Load path: /languages
What’s Next
If you like this plugin, check out our other tools:
VOLIXTA Booking – The All-in-One WordPress Booking Plugin
Manage unlimited staff, services, clients, payments, and locations in one powerful system.
VOLIXTA Toolkit – A collection of practical WordPress tools for configuration, maintenance, security, and site management.
