dotnet / dotnet/AspNetCore.Docs

Consider a new middleware for the simple security headers.

Open
#10,342 4 comments 0 reactions 0 assignees View on GitHub
area-security doc-enhancement Pri1 re-Safia
Dominant language
C#
Stars
13.1k
Forks
24.6k
Avg merge
1d 3h
Merged PRs (30d)
97

Description

Inspired by https://github.com/aspnet/templating/issues/497

- X-Content-Type
- X-Frame-Options
- X-XSS-Protection

But not Content-Security-Policy because that's very app dependent to be on by default, and never ever public-key-pins because that's going away because it sucked.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.