owasp-headers

Crates.ioowasp-headers
lib.rsowasp-headers
version0.1.2
sourcesrc
created_at2021-11-25 02:33:12.972422
updated_at2021-11-26 00:51:35.619669
descriptionbest-practice OWASP HTTP response headers ( https://owasp.org/www-project-secure-headers/ ) for Rust
homepagehttps://gitlab.com/jokeyrhyme/owasp-headers-rs
repositoryhttps://gitlab.com/jokeyrhyme/owasp-headers-rs.git
max_upload_size
id487383
size10,491
Ron Waldon-Howe (jokeyrhyme)

documentation

README

owasp-headers-rs Status Gitlab pipeline status Crates.io docs.rs

best-practice OWASP HTTP response headers ( https://owasp.org/www-project-secure-headers/ ) for Rust

headers

HTTP-Strict-Transport-Security = "max-age=31536000 ; includeSubDomains"
X-Frame-Options = "deny"
X-Content-Type-Options = "nosniff"
Content-Security-Policy = "default-src 'self'; object-src 'none'; child-src 'self'; frame-ancestors 'none'; upgrade-insecure-requests; block-all-mixed-content"
X-Permitted-Cross-Domain-Policies = "none"
Referrer-Policy = "no-referrer"
Clear-Site-Data = "\"cache\",\"cookies\",\"storage\""
Cross-Origin-Embedder-Policy = "require-corp"
Cross-Origin-Opener-Policy = "same-origin"
Cross-Origin-Resource-Policy = "same-origin"
Permissions-Policy = "accelerometer=(),autoplay=(),camera=(),display-capture=(),document-domain=(),encrypted-media=(),fullscreen=(),geolocation=(),gyroscope=(),magnetometer=(),microphone=(),midi=(),payment=(),picture-in-picture=(),publickey-credentials-get=(),screen-wake-lock=(),sync-xhr=(self),usb=(),web-share=(),xr-spatial-tracking=()"
Cache-Control = "no-store, max-age=0"
Pragma = "no-cache"

see also

Commit count: 16

cargo fmt