I would like to suggest to enable the following headers by default for web apps (roundcube etc);Code:
X-XSS-Protection "1; mode=block" X-Frame-Options SAMEORIGIN X-Content-Type-Options: "nosniff" Referrer-Policy to none
The referrer policy.. For obvious reasons
برچسب:
نویسنده: ایمان اصلاحی