| 开发者 | volixta |
|---|---|
| 更新时间 | 2026年3月11日 07:33 |
| PHP版本: | 7.4 及以上 |
| WordPress版本: | 6.9 |
| 版权: | GPLv2 or later |
| 版权网址: | 版权信息 |
home and siteurl to use https://..htaccess block on Apache/LiteSpeed, or falls back to a PHP redirect if needed.http:// links and replaces them with https:// (serialization-safe).upgrade-insecure-requests), X-Frame-Options, Referrer-Policy, Permissions-Policy, COOP/COEP/CORP..htaccess is not available, Volixta shows ready-to-copy Nginx rules..htaccess modification creates a timestamped backup.postmeta or options.localhost, .local, .test) and provides instructions for enabling trusted HTTPS locally with mkcert..htaccess redirect or uses a PHP fallback.
My Site Health report says “No security headers detected”.\
→ Apply modern security headers in one click.
How can I add WordPress security headers without editing code?\
→ Configure and apply headers from the plugin interface.
After enabling SSL, my site still shows mixed content errors.\
→ Run the Mixed Content Scan + Fixer.
I'm on Nginx, so .htaccess doesn't work.\
→ Volixta provides ready-to-copy Nginx configuration snippets.
/wp-content/plugins/ or install from the WordPress plugin directory.Open Volixta → click Activate SSL. The plugin updates your WordPress and Site URL to HTTPS.
Go to the Security Headers panel and click Apply Security Headers.
Yes, but only when you trigger an action manually. Blocks are clearly wrapped:
# BEGIN Volixta HTTPS Redirect# END Volixta HTTPS RedirectYes. Volixta shows Nginx configuration snippets for redirects and headers.
No. Everything runs only in the admin panel. On the frontend, only the optional PHP redirect runs when enabled.
Yes. Local environments are detected automatically and instructions are provided to enable HTTPS with mkcert.
Only minimal configuration is stored in wp_options:
/wp/v2/users)