• Resolved netojose

    (@netojose)


    Hi Sir,

    I implemented the plugin and activated the various options but still Dareboost report points some issues:

    1. This page is exposed to “clickjacking” type attacks. On the plugin I choose “deny” on X-Frame-Options;

    2. Block access to the entire page when an XSS attack is suspected. On the plugin I choose 1; mode=block on X-XSS-Protection;

    3. Disable the auto detection of resource type. On the plugin I have “nosniff” on X-Content-Type-Options.

    Also, when I run https://securityheaders.io it points out that I am missing on everything: Strict-Transport-Security, X-Frame-Options, X-XSS-Protection, X-Content-Type-Options, Referrer-Policy.

    Can you give me some clue on this?

    Thanks a lot!

    Jose

    The page I need help with: [log in to see the link]

Viewing 2 replies - 1 through 2 (of 2 total)
Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Dareboost report issues’ is closed to new replies.