Add Sincra to WordPress
To add Sincra to a WordPress site, install the free WPCode plugin, paste your Sincra code into its Footer box and save. WPCode adds the code before the closing </body> tag of every page, and your code stays in place when you change or update your theme.
What do I need before I start?
- A Sincra account with an active plan. Before you choose a plan, you can try the assistant in the Simulator of your dashboard.
- A WordPress site where you can install plugins, and an administrator account.
Step 1: Get your code from Sincra
In your Sincra dashboard, open the Widget page and add your domain under Allowed domains, for example example.com. Then click Copy in the Installation card. The HTML guide explains both steps in more detail.
Step 2: Install WPCode
- In your WordPress admin, go to Plugins and add a new plugin.
- Search for WPCode, then install and activate "WPCode - Insert Headers and Footers + Custom Code Snippets".
Step 3: Paste the code in the footer
- Go to Code Snippets > Header & Footer.
- Paste your Sincra code in the Footer box.
- Save your changes.
Step 4: Check that it works
- If your site uses a caching plugin, clear its cache.
- Open your website in a private browser window, so you see the new version.
- Open the chat and ask a question that your pages answer.
Why doesn't the assistant appear?
- Your domain is not in Allowed domains, or it is written differently from the address of your site.
- Your plan is not active yet.
- The page is an old cached copy. Clear the cache of your caching plugin and reload in a private window.
- The code is on the page twice, for example in WPCode and in your theme. Keep only one copy.
Does my site's Content Security Policy need changes?
Most websites don't have a Content Security Policy, and then there is nothing to change. If yours sends one, it must allow Sincra, or the assistant won't load or won't answer. Add these sources to your policy:
script-src https://sincra.cloud
connect-src https://sincra.cloud https://sincra-prod-app-gr535u4h4q-no.a.run.app
frame-src https://sincra.cloud
style-src 'unsafe-inline'
If your policy doesn't list one of these directives, browsers fall back to default-src (for frame-src, to child-src first if you have it), so add the sources there. If your style-src uses a nonce or a hash, browsers ignore 'unsafe-inline': in that case, write to support@sincra.cloud.
What each line is for: the assistant's script loads from sincra.cloud, it talks to our servers at the two addresses in connect-src, its bot check runs in a small frame from sincra.cloud, and it styles itself with an inline style block. It loads no images, fonts or other scripts on your pages.
What if the code is on the page twice?
Keep one Sincra code on each page. If you paste a new code, remove the old one first: two codes on the same page don't work correctly.
Sources
Steps checked on September 30, 2026 against the WPCode page in the WordPress.org plugin directory and the WPCode header and footer guide on WPBeginner.