
Security headers
Every MalCare article covering security headers, newest updates first.
8 articles


Referrer Policy in WordPress: What It Is and How to Configure It
If a security scan has flagged your site for a missing referrer policy WordPress setting, you probably want a safe fix—not another header to configure blindly.
HSTS WordPress: How to Add the Strict-Transport-Security Header Safely
If a scanner reports no HSTS header after you moved WordPress to HTTPS, you need to know what HSTS changes before you enable it.
X-Frame-Options WordPress: Configure and Test It Safely
If you need an x-frame-options wordpress fix, first inspect the response header your site sends.
How to Add X-Content-Type-Options in WordPress
If a security scan says your site is missing x-content-type-options wordpress, use this setting:
WordPress Security Headers: 7 Headers That Matter and How to Use Them Safely
Configure seven WordPress security headers safely, understand what each one controls, and test for conflicts with logins, forms, scripts, and embeds.
Content Security Policy WordPress: How to Add CSP Safely
Learn how to configure Content Security Policy WordPress header to enhance your site's security and protect against malicious content with this step-by-step guide
Beginner’s Guide To Fixing mod_security WordPress Errors
Diagnose and fix mod_security-related WordPress 403 errors safely by identifying blocked requests and working with your host.