You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Added support for Referrer-Policy through SecurityHeadersMiddleware and ReferrerPolicyHeaderValue
Added support for X-Frame-Options through SecurityHeadersMiddleware, XFrameOptionsAttribute and XFrameOptionsHeaderValue
Added support for X-XSS-Protection through SecurityHeadersMiddleware, XXssProtectionAttribute and XXssProtectionHeaderValue
Added support for X-Content-Type-Options through SecurityHeadersMiddleware
Added support for X-Download-Options through SecurityHeadersMiddleware
Added support for block-all-mixed-content directive in Content Security Policy
Added support for upgrade-insecure-requests directive in Content Security Policy
Added support for require-sri-for directive in Content Security Policy
Added support for plugin-types directive in Content Security Policy
Added support for worker-src directive in Content Security Policy
Added support for frame-src directive in Content Security Policy
Added support for Content Security Policy reporting through ISecurityHeadersReportingService, ContentSecurityPolicyReportingMiddleware and ContentSecurityPolicyViolationReport
Added support for hashes caching in Content Security Policy tag helper
Added HttpResponseHeadersExtensions which provides methods for directly setting headers on response