8ad2fbc952ab156bc354b7f1c63d408088706f93
HardHat adds various headers to help protect your site from vulnerablities.
In short this allows:
app.DnsPrefetch(allow: false); //turn off dns prefetch to keep privacy of users on site
app.AddFrameGuard(new FrameGuardOptions(FrameGuardOptions.FrameGuard.SAMEORIGIN)); //prevent content from being loaded in an iframe unless its within the same origin
app.UseHsts(maxAge: 5000, includeSubDomains: true, preload: false); //enforce hsts
todo:
- CSP
- ie NoOpen
- don't sniff mime type
- XSS protection
- disable referer
Description
Languages
C#
86.5%
HTML
12.2%
CSS
0.8%
JavaScript
0.5%