No unsafe-inline
by Giuseppe · Security
Also makes 1 other plugin · 700+ installs across the portfolio →
No unsafe-inline helps you to build a Content Security Policy avoiding to use 'unsafe-inline' and 'unsafe-hashes'.
76 health vs 64 average across 997 Security plugins
Directory ranking optimization
How it's scored →How well this listing is tuned to rank in WordPress.org search, on the factors an owner controls. Not popularity, optimization.
Well optimized
Biggest win: Support resolution
To rank higher: Mark more forum threads resolved — the resolved ratio feeds the ranking.
Get the full rank-higher report →Daily downloads
Since 2022-10-05 · 1,426 days · wp.org + Plugin Pulse archive
30-day downloads
Rolling 30-day volume · peaks are release surges
146
now · peak 826
Directory rank vs rivals
wp.org popularity rank over time · higher is better · when a rival's line climbs above yours, they've overtaken you
Update activity
How busy the existing users are, measured as downloads in the last 30 days for every 1,000 active sites. A spike means a new release everyone's pulling; a long, slow decline means an aging user base that updates less.
Release cadence
Occasionally updatedHow often this plugin actually ships. A steady rhythm is the maintenance signal a single "last updated" date can't show.
3
releases in the last 12 months
9mo ago
latest release · v1.3.0
16
tagged releases on record
Recent releases
What its installed base runs
via wordpress.orgShare of active installs on each version of this plugin · 76% run the current release. Green is the current release; a big slice on older versions is a user base that has stopped updating.
Estimated active installs
The public count shows “200+”. Our estimate pins where the real number sits.
Refined from the date this plugin crossed into its current band.
Install history · since 2022-10-04 · 1,382 observations
Estimated value
What this plugin might earn a year, and what it might sell for. Modeled from public signals; we don't see anyone's books.
Est. annual revenue
Est. acquisition value
No paid tier is visible, so we don't put a figure on revenue or sale value: that would be guessing. The install base is a real asset to an acquirer, just not one public data lets us price. A small install base leaves thin data to model from.
Details
Recent reviews
All reviews on wp.org ↗- ★★★★★ hohumtiddleypom1.8y ago
This plugin has a learning curve. And it demands patience. But the results exceed expectations. I used this plugin on a local server. I aimed to find Gutenberg Inline styles in (rendered) HTML. This plugin found the inline styles and several style attributes.
Read on wp.org ↗ - ★★★★★ mdbraber2.1y ago
Works like it says on the box. Make sure you have the right PHP modules installed. Thanks for building this!
Read on wp.org ↗ - ★★★★★ feofanidze2.5y ago
Not everything went smoothly, I had to abandon the Clearfy plugin and tinker with the settings, but it was worth it. All СSP headers passed the evaluator-test successfully.
Read on wp.org ↗ - ★★★★★ Anonymous User3.7y ago
I’ve tried countless plugins for creating CSP policies, but none of them let you create strong policies that could actually mitigate XSS attacks. This plugin is pretty young and is made by a solo developer, naturally there are some rough edges for such a plugin. But these problems should go away with time.
Read on wp.org ↗ - ★★★★★ gianni654.0y ago
The only possible solution for those who want to adopt a stricted csp. I have installed dozens of plugins for the management of the CSP, but THERE IS NO OTHER FREE PLUGIN that allows to use scripts and CSS online without disabling the protection against XSS vulnerabilities. All others disable the protection by adding the “unsafe-inline” directive. The solution adopted by this plugin is the only intelligent one: it removes styles and scripts in line, putting them in external files (allowed by stricted policy). Furthermore, the creator was very kind, thorough and helpful. Although perhaps a bit immature, I absolutely recommend this plugin, to try! Gianni
Read on wp.org ↗
Behavioral tests
via WP HiveAutomated install-time checks, tested on PHP 8.1.12 · WP 6.9
Languages
via translate.wordpress.orgTranslated into 3 languages, 1 at 90% or more
Growth timeline
Install-tier crossings we have observed, and how long each tier took to outgrow
- 2025-01-30 100+ → 200+ up after 8 days in tier
- 2025-01-22 200+ → 100+ down after 5 days in tier
- 2025-01-17 100+ → 200+ up after 49 days in tier
- 2024-11-29 200+ → 100+ down after 9 days in tier
- 2024-11-20 100+ → 200+ up after 23 days in tier
- 2024-10-28 200+ → 100+ down after 5 days in tier
- 2024-10-23 100+ → 200+ up after 194 days in tier
- 2024-04-12 90+ → 100+ up after 6 days in tier
Competes with
The plugins that solve the same job, ranked by shared tags then reach, closest match first. The letter on the right is each plugin's health grade (A best, F worst).
- C Content Security Policy Manager 2K+ installs · 4.0★ · 3 shared tags D
-
GD Security Headers 1K+ installs · 3.9★ · 3 shared tags B
-
Security Header Generator 500+ installs · 4.2★ · 2 shared tags A -
Wordfence Security – Firewall, Malware Scan, and Login Security 5M+ installs · 4.7★ · 1 shared tag A
-
Hostinger Tools 3M+ installs · 3.6★ · 1 shared tag B
-
Really Simple Security – Simple and Performant Security (formerly Really Simple SSL) 3M+ installs · 4.9★ · 1 shared tag A
Embed this report card
Drop a live Pulse card for No unsafe-inline into a readme, a review or a deck. It updates itself.
<iframe src="https://plugins.wpmayor.com/embed/no-unsafe-inline" width="480" height="300" style="border:0" loading="lazy" title="No unsafe-inline — Plugin Pulse"></iframe> No unsafe-inline: 200+ active installs, 5.0★ (5 reviews). Plugin Pulse (WP Mayor), as of 2026-08-31. https://plugins.wpmayor.com/plugin/no-unsafe-inline