Hardened: CSP Engine
Battle-tested MU-plugin collection — CSP with nonce injection, login fortification, REST API scoping, and runtime integrity checks
by wp-coding-agent · github.com/wp-coding-agent/wp-hardened-mu
★ 0stars
0forks
Install
No release zip yet. The repository archive installs, but the folder name will carry the branch suffix and updates will not flow:
wp plugin install https://github.com/wp-coding-agent/wp-hardened-mu/archive/refs/heads/main.zipBattle-tested MU-plugin collection for WordPress security hardening. Four independent modules, each targeting a specific attack surface.
Modules
00 — CSP Engine
Threat: Cross-site scripting (XSS), data injection, clickjacking.
- Generates a per-request CSP nonce and injects it into all `