Skip to content
Back to the index

Headless REST API Security

wordpress.orgAuth & identity

PulseGate's liveness check found it on 13 Sep 2026; it is registered on WordPress.org and has been in the index since 27 Jun 2026. How this is checked

Headless REST API Security is a WordPress plugin that helps administrators control and secure access to REST API endpoints. It provides allow-listing, API key authentication, and a settings interface, making it ideal for headless WordPress sites and developers needing granular API access control.

Inferred · not functionally tested

FreeWeb
Headless REST API Security preview
Visit wordpress.org

Overview

5 features

Purpose: Securing and managing access to WordPress REST API endpoints for headless setups.

Inferred · not functionally tested

Audience: WordPress administrators and developers

Inferred · not functionally tested

Functions: Unknown

Interfaces: API: indicated (inferred, not tested) · MCP: unknown · CLI: unknown · Self-hosting: unknown

Recorded constraints: pricing: free · license: Proprietary · platforms: WEB, API · deployment: browser

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: wordpress.org · wordpress.org. These links do not verify the individual claims.

In the Auth & identity space, Headless REST API Security takes a focused approach. Inferred · not functionally tested: It focuses on securing and managing access to WordPress REST API endpoints for headless setups. Inferred · not functionally tested: It is built as a consumer product for wordPress administrators and developers. Basis unknown · not verified: It is available for free. Basis unknown · not verified: Headless REST API Security is available on the web.

It is developed by Md. Rakib Ullah, and it first shipped in 2026. Inferred · not functionally tested: Key capabilities include API access control, route allow-listing, and API key authentication. The interface is available in English and French. Inferred · not functionally tested: Catalogued interfaces include a public API.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • API access control
  • Route allow-listing
  • API key authentication
  • Admin settings interface
  • Headless redirect

Topics: Inferred · not functionally tested

Tags
rest-api-securityheadless-wordpressapi-access-control

JSON profile · Text profile · Access guide

Built with & integrations

Connectors
API
Runs on
Browser

Trust & compliance

Public signals
HTTPSPrivacy PolicyFree tierMulti-language

Indexing history

What PulseGate has recorded for this listing

Nothing recorded for this listing in this window.

Frequently asked questions about Headless REST API Security

What does Headless REST API Security do?
Inferred · not functionally tested: Headless REST API Security focuses on securing and managing access to WordPress REST API endpoints for headless setups. It is catalogued under Auth & identity on PulseGate.
Who is Headless REST API Security for?
Inferred · not functionally tested: Headless REST API Security is a consumer product built for wordPress administrators and developers.
Is Headless REST API Security free?
Basis unknown · not verified: Yes — Headless REST API Security is free to use.
What platforms does Headless REST API Security run on?
Basis unknown · not verified: Headless REST API Security runs on the web.
Is Headless REST API Security still active?
PulseGate's liveness check found it on 13 Sep 2026.
What are alternatives to Headless REST API Security?
Similar projects tracked by PulseGate include WP REST API Security, Headless, and WP REST API Key Authentication.WP REST API SecurityHeadlessWP REST API Key Authentication
Who develops Headless REST API Security?
Headless REST API Security is developed by Md. Rakib Ullah.
When did Headless REST API Security launch?
Headless REST API Security first shipped in 2026.

Similar projects

Closest matches by what these projects do