Security Headers is a free HTTP response header analysis tool. To get an A+ grade on Security Headers, you had to use a CSP without unsafe- inline anywhere in the policy. Because of this incredibly strict requirement, not even my own sites score an A+. I wanted to make a change that would result in more sites achieving the highest possible grade.

7m read timeFrom scotthelme.co.uk
Post cover image
2 Comments

Sort: