fortify / IWA-Java

Insecure Web + API application with example Fortify integrations into many DevSecOps and CICD platforms
GNU General Public License v3.0
2 stars 31 forks source link

Seed REST API with missing STSH #10

Open fransvanbuul opened 1 year ago

fransvanbuul commented 1 year ago

DAST focus! 11365 Missing HTTP Strict-Transport-Security Header

fransvanbuul commented 1 year ago

Delaying this because this requires HTTPS/SSL, which requires hosting/domain name, etc.