Security Headers & Caching
Security Headers & Caching is a comprehensive WordPress plugin that helps protect your website by implementing essential HTTP security headers and optimizing performance through intelligent caching mechanisms. Compatible with all hosting providers including Aruba, SiteGround, Bluehost, and more. Key Features Easy Configuration – Simple admin interface to enable/disable security headers Multiple Security Headers – Comprehensive security header support Smart Caching – Configurable cache duration for better performance Universal Compatibility – Works with all hosting providers No Conflicts – Compatible with popular security and caching plugins Translation Ready – Full internationalization support Security Headers Included X-Powered-By – Removes server technology information to prevent targeted attacks Content-Security-Policy (CSP) – Controls which resources can be loaded to prevent XSS attacks Strict-Transport-Security (HSTS) – Forces HTTPS connections for enhanced security X-XSS-Protection – Enables XSS filtering in older browsers X-Frame-Options – Prevents clickjacking attacks by controlling iframe embedding X-Content-Type-Options – Prevents MIME type sniffing Referrer-Policy – Controls how much referrer information is shared Permissions-Policy – Controls browser features and APIs Caching Features Configurable cache duration (seconds) Automatic cache headers management Compatible with CDN services No conflict with existing cache plugins Why Security Headers Matter Security headers are HTTP response headers that tell your browser how to behave when handling your website’s content. They help protect against: Cross-Site Scripting (XSS) attacks Clickjacking attempts Code injection attacks MIME type sniffing Protocol downgrade attacks And much more… Developer Friendly The plugin provides filters for developers to customize headers: shc_security_headers – Filter to modify security headers array Test Your Security After installing and configuring the plugin, test your site’s security at: * Security Headers * Mozilla Observatory Privacy This plugin does not collect, store, or transmit any user data. It only modifies HTTP response headers sent by your server. Developer Documentation Filters shc_security_headers Modify the security headers before they are sent. add_filter( 'shc_security_headers', function( $headers ) { // Add custom header $headers['X-Custom-Header'] = 'custom-value'; // Modify existing header $headers['X-Frame-Options'] = 'DENY'; return $headers; } ); Constants SHC_VERSION – Plugin version number SHC_PLUGIN_DIR – Plugin directory path SHC_PLUGIN_URL – Plugin directory URL SHC_PLUGIN_BASENAME – Plugin basename Support For support, feature requests, or bug reports, please visit: * Plugin Website Credits Developed by Studio Be4 – Web Design & Development Agency License This plugin is licensed under the GPLv2 or later.
Top keywords
- headers20×5.46%
- security18×4.92%
- security headers12×3.28%
- attacks6×1.64%
- shc6×1.64%
- caching5×1.37%
- cache4×1.09%
- support4×1.09%
- compatible3×0.82%
- controls3×0.82%
- header3×0.82%
- http3×0.82%
Super Page Cache – Cloudflare Cache, Page Speed & Core Web Vitals
Super Page Cache is a powerful full page cache plugin for WordPress that caches static files (CSS, JS, images) and HTML webpages at both server disk-level and the global Cloudflare CDN. Get enterprise-level performance with zero configuration required. Super Page Cache improves site speed by enabling server-side caching, cache preloading, local Google Fonts, and removing unused CSS and JavaScript, boosting Core Web Vitals and load times. Works right out of the box with or without Cloudflare. Powerful disk caching saves files locally on your server. To use Cloudflare CDN, just enter your API Key or Token. The intuitive dashboard includes detailed settings and built-in documentation, though most users won’t need to change the defaults. ⚡ Quick Links Documentation → Complete setup and configuration guide Support Forum → Community help and expert support YouTube Videos → Step-by-step visual guides for every feature Go Pro → Advanced features and priority support 🚀 How Does The Plugin Work? Disk Caching (Works Without Cloudflare): Server-level caching saves HTML pages and static files directly to your server, loading pages instantly without any CDN. Cloudflare CDN (Optional): Connect your Cloudflare account to leverage 200+ edge locations using modern Cache Rules. Works with FREE Cloudflare Plan – no paid account required. Achieve higher Pingdom and GTmetrix scores with edge delivery. Supports Free, Pro, and Enterprise Cloudflare plans with auto-purging, cron jobs, and integrated metrics. 🔥 Core Features (Free Version) 🚀 Complete Caching Solution Disk Caching: Lightning-fast server caching with Cloudflare fallback CDN Integration: Optional Cloudflare CDN with 200+ edge locations Cache Controls: Exclude cookies, query params, URIs, AMP, feeds, REST API Cache Lifespan: Custom expiration or never-expire settings Header Management: Preserve critical response headers Cache Buster: Logged-in users never see cached content Performance Metrics: Track cache effectiveness ⚡ Performance Optimization Google Fonts: Combine and serve locally for better Web Vitals Lazy Loading: Images, videos, iframes, background images Lazy Load Exclusions: By keywords, URL patterns, or CSS classes Assets Manager: Enable/disable CSS/JS per page Browser Caching: Auto-configure .htaccess rules These performance features cover CSS, caching, lazy loading, and browser caching to keep every page fast. 🛠️ Advanced Cache Management Auto-Purging: Clear cache on content updates including related pages Granular Purge: HTML only or entire cache with assets Preloader: From sitemaps, menus, or recent posts (manual/CRON) Background Processing: Uses Action Scheduler Queue-Based Purging: Prevent server overload Backend Bypass: Prevent admin dashboard caching Per-Page Control: Exclude via editor metabox Toolbar Purging: Instant purge from WP toolbar 🔧 Developer & Power User Features Redesigned Dashboard: Intuitive navigation with grouped settings Built-in Documentation: Tips within the dashboard Cache Backends: advanced-cache.php or cURL-based Defer JS Filter: spc_defer_script to exclude scripts Role Permissions: Control who can purge cache Cloudflare API: All plans via API Key or Token Export/Import: Settings as JSON Preserve on Deactivation: Retain settings for staging 🗄️ Database Optimization Database Cleanup: Remove revisions, auto-drafts, trash, spam, transients Scheduled Maintenance: Daily, weekly, or monthly Table Optimization: SQL OPTIMIZE TABLE for defragmentation Selective Cleanup: Choose which data types to clean One-click database optimization helps clean database clutter and improve performance. 🌐 Universal Compatibility Premium Hosts: Kinsta, WP Engine, SpinupWP, and more eCommerce: WooCommerce, Easy Digital Downloads Server Caches: Varnish, OPcache auto-purge Prefetch: Internal links via Instant.page 💎 Super Page Cache PRO with Advanced Performance Features Ignore Marketing Parameters: Better cache hit rate (UTM, affiliate, tracking codes) Defer JavaScript: Eliminate render-blocking JS. Learn more Delay JavaScript: Load JS on interaction only. Learn more Advanced Lazy Loading: Viewport detection, above-the-fold optimization Advanced Exclusions: Exclude specific JS/pages from caching Priority Support: Faster email response times Upgrade to Pro 🎯 Usage Note Disable page caching in other plugins (WP Rocket, LiteSpeed Cache, W3 Total Cache). Safe to use alongside Optimole, Autoptimize, Perfmatters, ShortPixel for asset optimization. ⭐ What Users Say ★★★★★ “Response times dropped from 400ms+ to below 200ms. Almost the same as my static S3 site—using the free version!” – @jurijs0 ★★★★★ “A game-changer for our website’s performance! Noticeable improvement in loading times, boosted engagement and SEO.” – @brandnexusstudios Leave a review | Follow us on Twitter | YouTube Super Page Cache is backed by Themeisle, powering 1M+ WordPress sites with 450+ five-star Trustpilot ratings.