top of page
bottom of page
Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" Header always edit Set-Cookie (.*) "$1;HttpOnly;Secure" Header always set X-Frame-Options "sameorigin" Header setifempty Referrer-Policy "same-origin" Header set X-XSS-Protection "1; mode=block" Header set X-Permitted-Cross-Domain-Policies "none" Header set Referrer-Policy "no-referrer" Header set X-Content-Type-Options nosniff set Content-Security-Policy "upgrade-insecure-requests;"