You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Introduced Lib.AspNetCore.Security with SecurityHeadersMiddleware to centralize security headers support. Initial support includes HSTS, CSP and Expect-CT
Removed RequireHstsAttribute as HSTS support is now provided by SecurityHeadersMiddleware
Removed ContentSecurityPolicyAttribute as CSP support is now provided by SecurityHeadersMiddleware (CSP tag helper and html helper now depend on SecurityHeadersMiddleware)
Added ExpectCtReportingMiddleware, ExpectCtViolationReport and ISecurityHeadersReportingService for supporting Expect-CT violation reports
Added ContentSecurityPolicyHeaderValue, StrictTransportSecurityHeaderValue and ExpectCtHeaderValue for low level headers support