nhoizey’s avatarnhoizey’s Twitter Archive—№ 113,489

  1. …in reply to @TimVereecke
    @TimVereecke @anthony_ricaud Is there any page(s) somewhere that lists which security headers should be attached to which content-types? It looks like @MozDevNet doesn't contain this: developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy For example, I guess Strict-Transport-Security can be useful for any resource, right?