You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
This repository has been archived by the owner on Nov 4, 2024. It is now read-only.
Currently, the HTTP Observatory grants an extra 5 points for secure cookies and 5 for scripts with SRI; it grants +0 if a site has no cookies and +0 for sites without any scripts.
Secure cookies and scripts aren't as secure as an absence of cookies and scripts, so it doesn't make sense to give sites with these features a higher score than cookieless/scriptless sites. Rewarding cookieless/scriptless sites at least as much could help push the idea that cookies and scripts shouldn't be used unnecessarily.
The text was updated successfully, but these errors were encountered:
KamilaBorowska
added a commit
to KamilaBorowska/http-observatory
that referenced
this issue
May 18, 2022
Currently, the HTTP Observatory grants an extra 5 points for secure cookies and 5 for scripts with SRI; it grants +0 if a site has no cookies and +0 for sites without any scripts.
Secure cookies and scripts aren't as secure as an absence of cookies and scripts, so it doesn't make sense to give sites with these features a higher score than cookieless/scriptless sites. Rewarding cookieless/scriptless sites at least as much could help push the idea that cookies and scripts shouldn't be used unnecessarily.
The text was updated successfully, but these errors were encountered: