mirror of
https://github.com/freeCodeCamp/freeCodeCamp.git
synced 2026-01-07 00:03:44 -05:00
* feat(api): add security headers Includes the OWASP recommended headers for REST APIs. Taken from https://cheatsheetseries.owasp.org/cheatsheets/REST_Security_Cheat_Sheet.html#security-headers * test: check OWASP headers appear on GET / request * fix: only enable Strict-Transport-Security in prod