Mozilla HTTP observatory
Scan Summary :
Impact | Description | Documentation |
Content Security Policy (CSP) header not implemented | Implement one, see MDN's Content Security Policy (CSP) documentation. | |
| Documentation for x-frame-options-sameorigin-or-deny | |
Cookies set without using the | Documentation for cookies-secure-with-httponly-sessions | |
| Documentation for x-content-type-options-nosniff |