{"id":7507,"date":"2026-04-10T02:18:55","date_gmt":"2026-04-10T00:18:55","guid":{"rendered":"https:\/\/mybox.com\/help\/?post_type=manual_kb&#038;p=7507"},"modified":"2026-04-10T02:18:57","modified_gmt":"2026-04-10T00:18:57","slug":"how-to-avoid-wordpress-mixed-content-errors","status":"publish","type":"manual_kb","link":"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/","title":{"rendered":"How to Avoid WordPress &#8220;Mixed Content&#8221; Errors"},"content":{"rendered":"\n<div class=\"translation-block translation-block-merged\">\n<p class=\"wp-block-paragraph\">An SSL certificate is the foundation of a secure website, but simply having one doesn&#8217;t guarantee a &#8220;Clean&#8221; security status. Even with HTTPS enabled, your browser may show a &#8220;Not Secure&#8221; warning or a broken padlock. This is known as <strong>Mixed Content<\/strong>, and it occurs when a secure HTTPS page tries to load images, scripts, or videos over an unencrypted HTTP connection.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">The <strong>Insecure Content Warning<\/strong> plugin is a specialized tool designed to prevent these errors at the source\u2014the content creation process.<\/p>\n\n\n\n<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_86 ez-toc-wrap-left counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<div class=\"ez-toc-title-container\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<span class=\"ez-toc-title-toggle\"><\/span><\/div>\n<nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#What_is_the_Insecure_Content_Warning_Plugin\" >What is the Insecure Content Warning Plugin?<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-2\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#How_the_Plugin_Protects_Your_Website\" >How the Plugin Protects Your Website<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-3\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#Installation_and_Activation\" >Installation and Activation<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-4\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#Advanced_Fixing_Existing_Errors_via_WP-CLI\" >Advanced: Fixing Existing Errors via WP-CLI<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-5\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#Best_Practices_and_Troubleshooting\" >Best Practices and Troubleshooting<\/a><\/li><li class='ez-toc-page-1 ez-toc-heading-level-3'><a class=\"ez-toc-link ez-toc-heading-6\" href=\"https:\/\/mybox.com\/help\/en\/knowledgebase\/how-to-avoid-wordpress-mixed-content-errors\/#Summary\" >Summary<\/a><\/li><\/ul><\/nav><\/div>\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"What_is_the_Insecure_Content_Warning_Plugin\"><\/span>What is the Insecure Content Warning Plugin?<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<\/div>\n\n<div id=\"mybox-978938660\" class=\"mybox-content mybox-entity-placement\"><div class=\"early-access-banner-inpost\">\r\n  <div class=\"banner-left-inpost\">\r\n    <div class=\"icon-box-inpost\">\r\n      <img decoding=\"async\" src=\"https:\/\/mybox.com\/help\/wp-content\/uploads\/2026\/02\/square-info-icon.svg\" alt=\"Info\">\r\n    <\/div>\r\n    <div class=\"text-box-inpost\">\r\n      <span class=\"label-inpost\"><span class=\"translation-block translation-block-banner-text\">Early access<\/span><\/span>\r\n      <h4><span class=\"translation-block translation-block-banner-text\">Still need help?<\/span><\/h4>\r\n      <p><span class=\"translation-block translation-block-banner-text\">Contact our customer service team.<\/span><\/p>\r\n    <\/div>\r\n  <\/div>\r\n\r\n  <div class=\"banner-right-inpost\">\r\n    <a href=\"https:\/\/panel.mybox.com\/helpdesk2\/v\/list\/\" class=\"banner-button-inpost\"><span class=\"translation-block translation-block-banner-text\">Message us<\/span><\/a>\r\n  <\/div>\r\n<\/div><\/div>\n\n<div class=\"translation-block translation-block-merged\"><p class=\"wp-block-paragraph\">This free plugin acts as a &#8220;security gatekeeper&#8221; for the WordPress Gutenberg editor. Instead of fixing errors after they happen, it scans your posts and pages in real-time as you write them.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">If you accidentally paste a link to an image or script that starts with <code>http:\/\/<\/code>, the plugin will flag it immediately. Most importantly, it can be configured to <strong>prevent publication<\/strong> until the insecure link is fixed, ensuring your visitors never see a security warning.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"How_the_Plugin_Protects_Your_Website\"><\/span>How the Plugin Protects Your Website<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">When a browser loads a site over HTTPS, it expects every single piece of data on that page to be encrypted. If even one image is loaded via <code>http:\/\/<\/code>, the browser&#8217;s &#8220;security chain&#8221; is broken.<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>User Trust:<\/strong> Visitors are often wary of sites that trigger &#8220;Insecure Content&#8221; pop-ups.<\/li>\n\n\n\n<li><strong>SEO Impact:<\/strong> Search engines like Google prioritize fully secure sites. Mixed content can negatively impact your ranking.<\/li>\n\n\n\n<li><strong>Automation:<\/strong> The plugin removes the need for manual &#8220;view source&#8221; checks by highlighting problematic blocks directly in the editor.<\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Installation_and_Activation\"><\/span>Installation and Activation<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">Because the plugin is designed for simplicity, it requires no complex configuration on the <strong>mybox<\/strong> infrastructure.<\/p>\n\n\n\n<ol start=\"1\" class=\"wp-block-list\">\n<li>Log in to your WordPress dashboard.<\/li>\n\n\n\n<li>Go to <strong>Plugins > Add New<\/strong>.<\/li>\n\n\n\n<li>Search for <strong>&#8220;Insecure Content Warning&#8221;<\/strong> (by 10up).<\/li>\n\n\n\n<li>Click <strong>Install<\/strong> and then <strong>Activate<\/strong>.<\/li>\n<\/ol>\n\n\n\n<p class=\"wp-block-paragraph\">Once active, the plugin begins working immediately. There are no settings menus to navigate; it integrates directly into the Gutenberg sidebar and the publishing workflow.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Advanced_Fixing_Existing_Errors_via_WP-CLI\"><\/span>Advanced: Fixing Existing Errors via WP-CLI<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">If you have a large site with hundreds of existing posts, manually editing each one is impractical. For <strong>mybox<\/strong> users with SSH access, you can use <strong>WP-CLI<\/strong> to fix these links in bulk.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Using the command line, you can find and replace all <code>http:\/\/<\/code> instances of your own domain with <code>https:\/\/<\/code>:<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Bash<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>wp icw fix --all --post_type=page\n<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\"><em>Note: Always perform a full database backup before running bulk search-and-replace commands.<\/em><\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Best_Practices_and_Troubleshooting\"><\/span>Best Practices and Troubleshooting<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>1. Check the Browser Console<\/strong> If your site still shows a warning after fixing your links, press <strong>F12<\/strong> (or Right-Click &gt; Inspect) and go to the <strong>Console<\/strong> tab. It will list the exact URL of the resource that is still being loaded over HTTP.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>2. Update External Resources<\/strong> Sometimes the insecure content comes from a third-party widget or an old tracking script. Check if the provider offers an <code>https:\/\/<\/code> version of their code. Most modern services have supported HTTPS for years.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\"><strong>3. Use Relative Paths<\/strong> When possible, use relative paths (e.g., <code>\/images\/logo.png<\/code>) instead of absolute URLs (<code>http:\/\/yourdomain.com\/images\/logo.png<\/code>). Relative paths automatically use whatever protocol (HTTP or HTTPS) the main page is using.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\"><span class=\"ez-toc-section\" id=\"Summary\"><\/span>Summary<span class=\"ez-toc-section-end\"><\/span><\/h3>\n\n\n\n<p class=\"wp-block-paragraph\">The Insecure Content Warning plugin is a proactive tool for maintaining the integrity of your <strong>mybox<\/strong> hosted website. By catching protocol mismatches during the editing phase, you ensure a professional, secure experience for your users and maintain your standing with search engines.<\/p>\n<\/div>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"template":"","format":"standard","manualknowledgebasecat":[25,58],"manual_kb_tag":[],"class_list":["post-7507","manual_kb","type-manual_kb","status-publish","format-standard","hentry","manualknowledgebasecat-hosting","manualknowledgebasecat-web-applications-cms"],"_links":{"self":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/7507","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb"}],"about":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/types\/manual_kb"}],"author":[{"embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/users\/1"}],"version-history":[{"count":1,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/7507\/revisions"}],"predecessor-version":[{"id":7508,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb\/7507\/revisions\/7508"}],"wp:attachment":[{"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/media?parent=7507"}],"wp:term":[{"taxonomy":"manualknowledgebasecat","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manualknowledgebasecat?post=7507"},{"taxonomy":"manual_kb_tag","embeddable":true,"href":"https:\/\/mybox.com\/help\/en\/wp-json\/wp\/v2\/manual_kb_tag?post=7507"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}