Australian Information Security Manual
Guidelines for software development

Australian Information Security Manual ISM-1424: Content-Security-Policy, Hypertext Transfer Protocol Strict Transport Security and X-Frame

Content-Security-Policy, Hypertext Transfer Protocol Strict Transport Security and X-Frame-Options are specified by web server software via security policy in response headers.

Maintained by Gerard BlokdykVerified against the published standard Control text last updated

Other controls in Guidelines for software development

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.