CSCfi / CSCfi/rems

Set a Content-Security-Policy header

Open
#2,536 0 comments 0 reactions 0 assignees View on GitHub
Technical Debt
Dominant language
Clojure
Stars
66
Forks
28
Avg merge
7d 4h
Merged PRs (30d)
2

Description

It's a security best practice. Currently we only have the (deprecated?) security headers like `X-XSS-Protection` set by ring.middleware.default.

See also #2216

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.