dddeastanglia / DDDEastAnglia

DDD East Anglia website
https://www.dddeastanglia.com
7 stars 10 forks source link

Add security headers #369

Closed philpursglove closed 5 years ago

philpursglove commented 5 years ago

Looking at our SecurityHeaders report we're currently getting an F - this PR is to add a number of the headers we're currently missing and also remove the ASP.NET version headers. Once this is merged I'll add issues for Content Security Policy/Feature Policy/Referer Policy.

adrianbanks commented 5 years ago

Seems like a useful change. 👍