Skip to content

OWASP Zap Security Review of https://exchangerate.host/ #235

@emacneille2

Description

@emacneille2

I used a well known tool called ZAP (Zed Attack Proxy) to do a security review of your site. Addressing these issues will allow usage of your site from certain mainstream platforms that require this type of review. For example, you are not setting a Content-Security-Policy Response Header which is considered a security best practice.

As of now I am unsure if addressing these are a requirement for my project in particular.

Thanks, I love the platform!

2023-09-20-ZAP-Report-exchangerate_host.pdf
Screenshot 2023-09-20 at 4 41 39 PM

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions