5 comments

  • GaProgMan 8 minutes ago

    And if any of the websites use .NET, they can get almost all of the recommended security headers in one line by using a NuGet package I created: https://gaprogman.github.io/OwaspHeaders.Core/

  • aetherspawn 14 minutes ago

    It’s ridiculous that the answer to a secure web is for everyone to sprinkle the magic salt and not something on the browser side

    • alserio a minute ago

      we'd need an epoch like reset to good defaults

  • n4pw01f 31 minutes ago

    Nice work! You gave me something to fix!!

    • tumdum_ 14 minutes ago

      Sadly non of it was written by a human being.