<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/index.php?action=history&amp;feed=atom&amp;title=Security_Headers</id>
		<title>Security Headers - Revision history</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/index.php?action=history&amp;feed=atom&amp;title=Security_Headers"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Security_Headers&amp;action=history"/>
		<updated>2026-05-06T15:29:22Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Security_Headers&amp;diff=168772&amp;oldid=prev</id>
		<title>Ari Elias-Bachrach: first page for the project has been started</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Security_Headers&amp;diff=168772&amp;oldid=prev"/>
				<updated>2014-02-23T06:19:04Z</updated>
		
		<summary type="html">&lt;p&gt;first page for the project has been started&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;HTTP headers which should be included by default. Methods for modifying or removing the headers for specific instances should be provided, but by default there are secure settings which should be enabled unless there are other overriding concerns.&lt;br /&gt;
* X-Frame-Options: SAMEORIGIN [https://developer.mozilla.org/en-US/docs/HTTP/X-Frame-Options|ref]&lt;br /&gt;
* X-XSS-Protection: 1; mode=block [http://blogs.msdn.com/b/ieinternals/archive/2011/01/31/controlling-the-internet-explorer-xss-filter-with-the-x-xss-protection-http-header.aspx|ref]&lt;br /&gt;
* X-Content-Type-Options: nosniff &lt;br /&gt;
* Content-Type: text/html; charset=utf-8&lt;br /&gt;
&lt;br /&gt;
Additionally, no headers should be included that needlessly divulge information about the server or it's configuration that an end user wouldn't need.&lt;/div&gt;</summary>
		<author><name>Ari Elias-Bachrach</name></author>	</entry>

	</feed>