mozilla-releng / shipit

Ship It API & Frontend
10 stars 25 forks source link

api.shipit.staging.mozilla-releng.net has failed the web security baseline #75

Open moz-hwine opened 4 years ago

moz-hwine commented 4 years ago

Site https://api.shipit.staging.mozilla-releng.net has failed the web security baseline scan.

The failing tests are:

Strict-Transport-Security Header Not Set [10035] x 3

This issue was automatically raised.

This issue is managed automatically by the baseline scan:

Full details, including how to test for these issues locally, can be found on this Security Baseline Service dashboard. If you have any questions or concerns please get in contact with @psiinon

oremj commented 4 years ago

Does this scanner have a static IP? We will need to whitelist it. This is protected by cloudarmor.

moz-hwine commented 3 years ago

The following test(s) for site https://api.shipit.staging.mozilla-releng.net have now passed:

Keep up the good work!

moz-hwine commented 3 years ago

The web security baseline scan results for site https://api.shipit.staging.mozilla-releng.net has new failures:

Content Security Policy (CSP) Header Not Set [10038] x 3