Baroshem / nuxt-security

🛡 Automatically configure your app to follow OWASP security patterns and principles by using HTTP Headers and Middleware
https://nuxt-security.vercel.app/
MIT License
737 stars 56 forks source link

feat(headers): explicit directives #466

Closed vejja closed 3 weeks ago

vejja commented 3 weeks ago

Types of changes

Description

This PR modifies the default settings of CSP directives with a default value of default-src 'none'. This conforms to Mozilla recommendations and increases the security score on the Mozilla Observatory.

Checklist:

vercel[bot] commented 3 weeks ago

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
nuxt-security ✅ Ready (Inspect) Visit Preview 💬 Add feedback May 31, 2024 10:43am