Skip to content

B-050 — Helmet / security headers baseline #165

@Junman140

Description

@Junman140

Severity: Medium · Area: backend/security · Evidence: acbu-backend/src/index.ts
Impact: Missing headers increase XSS/clickjacking impact for any HTML served. Fix direction: Helmet defaults + CSP for any static docs. Acceptance check: securityheaders.io A- or documented exceptions.

Metadata

Metadata

Assignees

No one assigned

    Labels

    Stellar WaveIssues in the Stellar wave program

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions