clipperz / password-manager

Clipperz is an online vault and password manager that knows nothing about you and your data. Everything you submit is locally encrypted by your browser before being uploaded to Clipperz. The encryption key is a passphrase known only to you and Clipperz could never access your data. Clipperz is built upon open proven and trusted encryption algorithms.
https://clipperz.is
GNU Affero General Public License v3.0
732 stars 134 forks source link

Any plans zu support hsts #130

Open qoomon opened 6 years ago

qoomon commented 6 years ago

https://hstspreload.org/

gcsolaroli commented 6 years ago

Hi @qoomon; I need to look into the SSL configuration for Clipperz, and will try to enforce also requirements listed by HSTS. Thanks for the pointer.

qoomon commented 6 years ago

A good article about how n26 enabled hsts

https://medium.com/insiden26/hsts-n26-hardcoded-in-your-browser-fb2af97ed839