Cookies and Content Security Policy
View on WordPress.orgScores higher than 79% of indexed plugins
About
Be fully GDPR and CCPA compliant through Content Security Policy. Blocks cookies and unwanted external content.
Security History
What It Does
Cookies and Content Security Policy uses HTTP Content Security Policy headers to block cookies and third-party resources from loading until the visitor consents. It combines a cookie consent banner with server-level blocking of external scripts, fonts, and trackers, aiming to satisfy GDPR and CCPA requirements at the header layer rather than relying on JavaScript-only suppression.
Who It's For
This plugin fits site owners who want technical, header-driven enforcement of cookie consent rather than a visual-only banner, particularly publishers loading third-party ads, European businesses serving international visitors, and privacy-focused operators comfortable editing CSP directives. It also suits small businesses that need legal compliance without paying for a premium consent management platform.
Who Should Skip It
Skip this plugin if you run a simple blog or brochure site with no third-party tracking, since CSP headers add complexity and potential breakage for negligible compliance gain. Users who need a polished, multi-language cookie banner with A/B testing or granular consent logging should look at Complianz or CookieYes instead.
The Bottom Line
Cookies and Content Security Policy earns a solid 80.11 out of 100 thanks to excellent maintenance, strong ratings, and broad compatibility, but its low install base and an unresolved support thread are real risks for users unfamiliar with CSP directives. It is a technically sharper option than most cookie banners, though anyone who needs hands-on help or a battle-tested user experience will be better served by Complianz or CookieYes.
Related Plugins
Pick this when you want a proven, widely deployed consent banner with 300,000 installs and a more familiar UI-driven setup.
Choose Complianz if you need region-specific consent flows, scanning of installed cookies, and detailed consent logging across multiple jurisdictions.
Pick Matomo if your underlying problem is third-party analytics tracking rather than cookie consent, since it gives you privacy-first analytics without consent banners at all.
Choose CookieYes when you want a highly polished, beginner-friendly banner with 1 million installs and pre-built compliance templates.
Pick this if you want a free, lightweight banner backed by a legal framework, and you do not need deep CSP header controls.