Skip to content

Issue 54 security headers - #63

Merged
ZhuchkaTriplesix merged 2 commits into
devfrom
issue-54-security-headers
Apr 26, 2026
Merged

ZhuchkaTriplesix merged 2 commits into
devfrom
issue-54-security-headers

Conversation

@ZhuchkaTriplesix

Copy link
Copy Markdown
Member

Summary

  • What this PR does (1–3 sentences).
  • If it closes a ticket: Closes #N (replace N).

Base branch

  • This PR targets dev, not main (unless maintainers asked for a hotfix).

Checklist

  • cargo build (and cargo clippy if you touched Rust)
  • maturin develop + tests as in docs/development.md (e.g. pytest from a clean cwd / installed wheel)
  • No unrelated drive-by refactors; commits are atomic and scoped

Note on .github/ISSUE_BACKLOG/

If you only touch issue template files under .github/ISSUE_BACKLOG/ (not application code), say so in the summary. Prefer a separate PR for backlog-only edits when possible.

- Rust: state.security_headers, set_security_headers, merge if-absent then CORS replace
- oxyroute.security_headers: HSTS on https only, optional CSP/Permissions-Policy, extra
- tests, docs/security-headers.md, backlog; App.set_security_headers
@ZhuchkaTriplesix ZhuchkaTriplesix added this to the v0.2.0 milestone Apr 26, 2026
@ZhuchkaTriplesix ZhuchkaTriplesix self-assigned this Apr 26, 2026

@ZhuchkaTriplesix ZhuchkaTriplesix left a comment

Copy link
Copy Markdown
Member Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

,.

@ZhuchkaTriplesix
ZhuchkaTriplesix merged commit f7617a5 into dev Apr 26, 2026
16 checks passed
@ZhuchkaTriplesix
ZhuchkaTriplesix deleted the issue-54-security-headers branch April 27, 2026 09:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

feat: security headers preset (HSTS, X-Frame-Options, CSP, etc.)

1 participant