Ideas for Arc XP

Missing security HTTP Headers

When requesting the QA stage of our application and inspecting the network traffic, important HTTP headers for security are missing.

The following are considered best practices and cannot be set by us:

In my opinion, setting HSTS makes sense, too. However, I cannot make a recommendation about the concrete value to pick here.

You can consult more headers at https://helmetjs.github.io/#reference

  • André Jaenisch
  • Jan 25 2022
  • Will not implement
Categories Other
I need it... Week
  • Attach files
  • Admin
    Katherine Grygo commented
    February 15, 2022 19:26

    Hello, This is currently supported and to add headers, please create a support ticket with your request. Thank you.