github / open-source-survey

The Open Source Survey
https://opensourcesurvey.org
Creative Commons Zero v1.0 Universal
516 stars 74 forks source link

HSTS for opensourcesurvey.org #97

Closed lgarron closed 5 years ago

lgarron commented 5 years ago

opensourcesurvey.org supports HTTPS as of #96. It would be great to go all the way with preloaded HSTS: https://hstspreload.org/?domain=opensourcesurvey.org

GH Pages supports HSTS headers, but it's not available externally yet so a Hubber like me needs to set it manually. Would it be alright for me to set the header to Strict-Transport-Security: max-age=63072000; includeSubDomains; preload?

mlinksva commented 5 years ago

Please do!

lgarron commented 5 years ago

woo!

screen shot 2018-12-07 at 14 48 39