Security headers on 4,688 small-business websites: 49.7% met none of 7 criteria
Thread
Loading the complete thread in the background. This saved snapshot is available now. Refresh
Unofficial Hacker News client; not affiliated with Y Combinator.
Security headers on 4,688 small-business websites: 49.7% met none of 7 criteria
Loading the complete thread in the background. This saved snapshot is available now. Refresh
Unofficial Hacker News client; not affiliated with Y Combinator.
n4pw01f · · focus · HN ↗
tumdum_ · · focus · HN ↗
rackcrunch · · focus · HN ↗
rackcrunch · · focus · HN ↗
aetherspawn · · focus · HN ↗
alserio · · focus · HN ↗
aetherspawn · · focus · HN ↗
sublinear · · focus · HN ↗
rackcrunch · · focus · HN ↗
axospaxos · · focus · HN ↗
rackcrunch · · focus · HN ↗
[dead]
GaProgMan · · focus · HN ↗
stargrazer · · focus · HN ↗
But.. what does it mean? Why enforce certain headers? Why enforce certain options? There is a section which kinda looks at this, but not really.
You have a bunch of links at the end for resources, but why not just provide the rationale for each rule or option inclusion in the article as well? What does each prevent or allow and why?
rackcrunch · · focus · HN ↗
[dead]
fitsumbelay · · focus · HN ↗
rackcrunch · · focus · HN ↗
[dead]
aetherspawn · · focus · HN ↗
wink · · focus · HN ↗
tinkeraudit · · focus · HN ↗
[dead]