Volixta SSL & Security Headers
Volixta SSL & Security Headers

Volixta SSL & Security Headers

5/5 (1 ratings) 10 active installs Updated Sep 23, 2026
Guided SSL and security setup with score and safety backup

Guided SSL and security setup with score and safety backup

Volixta SSL & Security Headers helps WordPress site owners configure HTTPS, manage SSL certificates, fix mixed content, and apply modern browser security without manually editing sensitive server files.

Use Volixta to request free Let’s Encrypt certificates, install supported certificates through hosting integrations, switch WordPress to HTTPS, configure 301 redirects, and verify the certificate that visitors actually receive.

Key features include:

  • Let’s Encrypt ACME v2 certificate requests with automatic HTTP-01 or manual DNS-01 validation, including wildcard certificates.
  • Certificate installation for supported cPanel, Plesk, and DirectAdmin environments, plus downloadable files for manual installation.
  • Automatic renewal checks for eligible HTTP-01 Volixta-managed production certificates, plus clear renewal status for manual DNS-01 certificates.
  • HTTPS setup and redirects with guarded Apache/LiteSpeed .htaccess changes and Nginx guidance.
  • Mixed Content tools including frontend checks, Deep Scan, Live Fixer, and serialization-safe database cleanup.
  • Security Headers including HSTS, CSP, CSP Report-Only, X-Content-Type-Options, Referrer-Policy, Permissions-Policy, COOP, COEP, and CORP.
  • Secure Cookies for WordPress authentication and PHP sessions with Secure, HttpOnly, and SameSite=Lax protection.
  • Safety Backups before managed .htaccess changes. wp-config.php backups are downloaded directly to your computer and are not stored by Volixta on the server.
  • Certificate and protection alerts for upcoming expiry, recent renewal failures, and protection regressions.
  • HSTS preload assistant that verifies the public Strict-Transport-Security response before reporting preload readiness, without submitting your domain to an external preload service.
  • Hosting-aware guidance for Apache, LiteSpeed, Nginx, reverse proxies, Cloudflare, localhost, and manual certificate workflows.

Volixta is designed to fail safely: it uses marked configuration blocks, verifies backups and file snapshots, and avoids overwriting unrelated .htaccess content.

Privacy

Volixta SSL & Security Headers does not include analytics, usage tracking, or visitor tracking.

The plugin stores the configuration required for enabled features inside your WordPress installation.

Some actions communicate with external services when you explicitly use features that require them.

Examples include:

  • Let’s Encrypt: certificate requests and ACME validation.
  • Hosting integrations: configured cPanel, Plesk, or DirectAdmin connections used for certificate installation.

Only information required to perform the requested operation is sent to those services.

Localization

Text domain: volixta-ssl-security-headers
Load path: /languages

What’s Next

If you like this plugin, check out our other tools: