mirror of
				https://github.com/drwetter/testssl.sh.git
				synced 2025-10-31 22:05:26 +01:00 
			
		
		
		
	Add more security headers
... and deprecate "X-Content-Security-Policy" and "X-WebKit-CSP"
This commit is contained in:
		| @@ -3438,13 +3438,17 @@ run_security_headers() { | ||||
|      for header_and_svrty in "X-Frame-Options OK" \ | ||||
|                              "X-Content-Type-Options OK" \ | ||||
|                              "Content-Security-Policy OK" \ | ||||
|                              "X-Content-Security-Policy OK" \ | ||||
|                              "X-WebKit-CSP OK" \ | ||||
|                              "X-Content-Security-Policy INFO" \ | ||||
|                              "X-WebKit-CSP INFO" \ | ||||
|                              "Content-Security-Policy-Report-Only OK" \ | ||||
|                              "Expect-CT OK" \ | ||||
|                              "Permissions-Policy OK" \ | ||||
|                              "Cross-Origin-Opener-Policy INFO" \ | ||||
|                              "Cross-Origin-Resource-Policy INFO" \ | ||||
|                              "Cross-Origin-Embedder-Policy INFO" \ | ||||
|                              "X-XSS-Protection INFO" \ | ||||
|                              "Access-Control-Allow-Origin INFO" \ | ||||
|                              "Access-Control-Allow-Credentials INFO" \ | ||||
|                              "Upgrade INFO" \ | ||||
|                              "X-Served-By INFO" \ | ||||
|                              "Referrer-Policy INFO" \ | ||||
|   | ||||
		Reference in New Issue
	
	Block a user
	 Dirk Wetter
					Dirk Wetter