4.x Add X-Content-Type-Options: nosniff
to responses from /health
and /metrics
and other Helidon-provided services
#9679
Labels
Environment Details
Problem Description
The
X-Content-Type-Options: nosniff
header discourages browsers from doing MIME-type sniffing.Should all Helidon-provided services include this header?
The text was updated successfully, but these errors were encountered: