AutoTweaks

plugin banner

WP Classic Setup: Removes WP version, dashicons, oEmbed, Jquery Migrate, XMLRPC. Set Http security headers,…

Author:Luis Celadita (profile at wordpress.org)
WordPress version required:4.2
WordPress version tested:5.8.2
Plugin version:1.4
Added to WordPress repository:16-10-2020
Last updated:22-12-2021
Warning! This plugin has not been updated in over 2 years. It may no longer be maintained or supported and may have compatibility issues when used with more recent versions of WordPress.
Rating, %:0
Rated by:0
Plugin URI:https://wordpress.org/plugins/autotweaks
Total downloads:838
Active installs:10+
plugin download
Click to start download

This plugin is fully compatible with Autoptimize and any cache plugin (Cache Enabler or Wp Super Cache by example)

Some of the tweaks that this plugin automatically applies securely are the following:

SET HTTP SECURITY HEADERS

  • X-Frame-Options: SAMEORIGIN
  • X-XSS-Protection: 1;mode=block
  • Referrer-Policy: no-referrer-when-downgrade
  • X-Content-Type-Options: nosniff
  • Strict-Transport-Security: max-age=15552000
  • Content-Security-Policy

REMOVE THIS

  • Remove Really Simple Discovery link from header
  • Remove wlwmanifest.xml (Windows Live Writer) from header
  • Remove Shortlink URL from header
  • Remove WordPress Generator Version from header
  • Remove s.w.org DNS Prefetch
  • Remove generator name from RSS Feeds
  • Remove Capital P Dangit filter
  • Remove WordPress and WooCommerce meta generator tags
  • Remove Jquery_migrate
  • Remove Dashicons in admin bar (only for non logged users)
  • Remove Post oEmbed

AND MORE AUTO SETTINGS

  • Change Control Heartbeat API interval (60 seconds)
  • Disable the XML-RPC interface
  • Disable PDF thumbnails preview
  • Disable Self Pingbacks
  • Limit Post Revisions to 1
  • Add IDs to posts, pages, and categories

Just activate the plugin and test your site’s speed in your favourite tool (GTMetrix, Pingdom Tools, Securityheaders.com, etc.)


Screenshots
FAQ
ChangeLog