Upgrade Warnings
- Support for the new PHP 7.2 is the default. You should modify this to point to the correct PHP version for your server if in use, until such time that you upgrade.
Security
- Add
Expect-CT
with default of enforce, max-age=30, report-uri='/api/report_ect'
- Add
Referrer-Policy
with default of strict-origin-when-cross-origin
Bugfix
- Fix some references to log files
Feature
- Add option to disable versions in
Server
Improvement
- Add support for PHP 7.2
- Add support end dates for all PHP versions
- Expand Content Security Policy to include report uri
- Add report only versions of Content Security Policy
Supporting
- Updated screenshot for Qualys SSL Labs
- Add screenshot for SecurityHeaders.io
- Fix badge from Code Climate
Changes
2.0.2 to 2.1.0
2.0.1 to 2.1.0
2.0.0 to 2.1.0