Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Deprecated headers are used in the Security Policy Reporting documentation #11942

Open
mark-monteiro opened this issue Nov 25, 2024 · 1 comment

Comments

@mark-monteiro
Copy link
Contributor

Which part? Which one?

Security Policy Reporting

Description

The documentation page on Security Policy Reporting has the following issues:

Suggested Solution

  • Add the Reporting-Endpoints to the examples like this: Reporting-Endpoints: csp-endpoint="https://o436832.ingest.us.sentry.io/api/xxxx/security/?sentry_key=xxxx"
  • Update the 'Compatibility Recommendationnote section to indicate thatreport-uri andReport-Toare both deprecated and theReporting-Endpoints` header is the current replacement
  • Make a note on the Expect-CT section that the header is deprecated and should not be used for new site, or alternatively, remove the section altogether
@getsantry
Copy link
Contributor

getsantry bot commented Nov 25, 2024

Assigning to @getsentry/support for routing ⏲️

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
Status: Waiting for: Support
Development

No branches or pull requests

1 participant