monitoring-plugins icon indicating copy to clipboard operation
monitoring-plugins copied to clipboard

nextcloud-security-scan: Should we report on Header Warnings, too?

Open NavidSassan opened this issue 5 years ago • 1 comments

In GitLab by @markuslf on Jun 11, 2020, 08:31

Currently check throws a warning if overall rating is below A/B. Should we also warn on "Header X-Frame-Options missing. Header X-Content-Type-Options missing."?

NavidSassan avatar Jun 11 '20 06:06 NavidSassan

In GitLab by @markuslf on Feb 16, 2022, 21:53

unassigned @markuslf

NavidSassan avatar Feb 16 '22 20:02 NavidSassan

Would be a separate check for HTTP Security Headers, maybe using Scott Helme's securityheaders.com

markuslf avatar Mar 28 '24 09:03 markuslf