Block Author Enumeration

Clickjacking Protection

Cross-Origin Embedder Policy (COEP)

Cross-Origin Opener Policy (COOP)

Cross-Origin Resource Policy (CORP)

Cross-Site Scripting (XSS) Protection

Custom Login Path

Disable File Editor

Disable REST API for Non-Logged-in Users

Global Privacy Control (GPC)

HTTPS Strict Transport Security (HSTS)

MIME Sniffing Protection

Permissions Policy (Feature Policy)

Referrer Policy - No Referrer

Referrer Policy - Strict Mode HTTP Only

Remove X-Powered-By Header

Server Signature Masking

Session Cookie

X-DNS-Prefetch-Control