Skip to content

Releases: rfc-st/humble

1.17

16 Dec 18:24
Compare
Choose a tag to compare

ea00ced - Feature - 1 new fingerprint header
33da150 - Feature - Yeah!!!. 52 new fingerprint headers :)
e7b5c67 - Feature - New insecure check: X-Robots-Tag (No Valid Directives)
7df0d65 - Feature - New insecure check: Onion-Location (Potentially Unsafe Header)
52c0f64 - Feature - 1 new fingerprint header
755fe3e - Feature - 2 new fingerprint headers
f753673 - Feature - 8 new fingerprint headers
ecfea53 - Feature - 8 new fingerprint headers
bb95602 - Feature - 5 new fingerprint headers
a60e632 - Feature - 16 new fingerprint headers
4466402 - Feature - 2 new insecure checks
4af1170 - Feature - 1 new fingerprint header
b3641e7 - Feature - 4 new fingerprint headers
cca1db6 - Feature - 5 new fingerprint headers
a697a67 - Feature - 3 new fingerprint headers
63bb747 - Feature - 14 new fingerprint headers
590197e - Feature - 4 new fingerprint headers
84498d6 - Feature - 2 new fingerprint headers
6cd8d32 - Feature - 4 new fingerprint headers
eafd464 - Feature - Refactor the output of unsafe/deprecated value checks
59795c7 - Feature - Refactor the output of unsafe/deprecated value checks
9e72f1a - Feature - Refactor the output of unsafe/deprecated value checks
e1450bf - Feature - 3 new fingerprint headers
21c1385 - Feature - 4 new fingerprint headers

ceaf23c - Fix - 'X-Robots-Tag' checks
c77e426 - Fix - Add 2 new headers to Insecure list
36b338d - Fix - Lists/Code optimization, regarding unsafe/deprecated value checks

8790872 - Minor - Indeed! (Greetings added)
168c705 - Minor - Small code reorganization
9c6b069 - Minor - Reorganize "git_url" info
30530fc - Minor - PDF output

1.16

06 Dec 20:33
Compare
Choose a tag to compare

66c9703 - Feature - 12 new fingerprint headers
aada521 - Feature - 5 new fingerprint headers
78b4436 - Feature - 5 new checks of deprecated headers
b3ac8a1 - Feature - 1 new check: Content-Type (Deprecated Values)
68981c8 - Feature - Add another reference for 'Expect-CT' check
9b66d11 - Feature - 1 new check: Clear-Site-Data (Ignored Header)
62281f8 - Feature - 1 new fingerprint header
e15e3d7 - Feature - 2 new fingerprint headers
b5402bd - Feature - 5 new fingerprint headers
4572861 - Feature - 3 new fingerprint headers
3ce2190 - Feature - 1 new fingerprint header
dc76e0c - Feature - 2 new fingerprint headers
123987e - Feature - Yeah!!!. 25 new fingerprint headers :)
6f09d5c - Feature - Bump fpdf2 dependency to 2.6.0 (HTMLMixin not needed anymore))
55ef5d6 - Feature - 1 new fingerprint header

9abf4eb - Minor - Simplify Content-Security-Policy (Too Permissive Value) check
c9bda49 - Minor - Improve "Access-Control-Allow-Methods" check output
b3ef33a - Minor - Lil' README update

1.15

19 Nov 19:17
Compare
Choose a tag to compare

6e47031 - Feature - 2 new fingerprint headers
8570a65 - Feature - 3 new fingerprint headers
13a285d - Feature - 4 new fingerprint headers
df4043a - Feature - 2 new fingerprint headers
18429d4 - Feature - Add new "Advanced Usage" example
2c04e08 - Feature - 6 new fingerprint headers
866e459 - Feature - 3 new fingerprint headers
c57cfe0 - Feature - 6 new fingerprint headers
b6380c3 - Feature - Dependabot badge updated with new screenshot
920dd18 - Feature - 13 new fingerprint headers
df44f53 - Feature - 1 new fingerprint header and better wording about Amazon S3
692247e - Feature - 3 new fingerprint headers
bda8346 - Feature - 3 new fingerprint headers
16ac7c2 - Feature - 3 new fingerprint headers
56497ae - Feature - 8 new fingerprint headers
a600eee - Feature - 19 new fingerprint headers
f584656 - Feature - 1 new fingerprint header
ad71f7f - Feature - 3 new fingerprint headers
e9b03bc - Feature - 2 new fingerprint headers

9710bd2 - Fix - Fix Dependabot badge URL
0b60690 - Fix - Improve "X-ET-API-Origin" fingerprint header check
7718314 - Fix - Some Optimizations and ongoing analysis messages improvements
5f059c8 - Fix - Fix: avoid using built-ins

74b7177 - Minor - Update references about "X-Download-Options"
46d926c - Minor - Lil' README change
3e20cb3 - Minor - Update README TOC
53c5de3 - Minor - Update README TOC
90aa949 - Minor - Lil' README TOC fix
9036ba0 - Minor - Lil' README updates

1.14

07 Nov 22:07
Compare
Choose a tag to compare

646fd6b - Feature - Add new "Advanced Usage" example
4cd5272 - Feature - Add screenshots to "Advanced Usage" section
a646292 - Feature - 7 new fingerprint headers
c9ba119 - Feature - 2 new fingerprint headers
78251d2 - Feature - 2 new fingerpint headers
6ff90ce - Feature - Add new Permissions-Policy feature
c3be676 - Feature - Indication of minimum versions of required dependencies
5698dd3 - Feature - 2 new fingerprint headers and better wording regarding HTTP servers
3f7d686 - Feature - 1 new fingerprint header
fa63e18 - Feature - Add 'WebDevSrc' fingerprint reference
a2155c8 - Feature - Add reference to vermin (detects Python version needed to run this tool)
1efe0fb - Feature - Add reference to vermin (used to detect the minimum Python version needed to run this tool)
44a0ec8 - Feature - Add evidence of the minimum Python version required to run this tool
875089b - Feature - Add Dependabot badge
377b2bd - Feature - Enable Dependabot analysis
bf5f2e9 - Feature - 1 new fingerprint header
ee0fa89 - Feature - 1 new fingerprint header
043297a - Feature - Update Content-Security-Policy directives

2cba4f4 - Fix - Simplified examples of advanced Linux usage
b8f9de8 - Fix - Improve "Advanced Usage" example
db54165 - Fix - Improve README and remove check_updates function (due to GitHub limit)
4c9e9b2 - Fix - Fix empty headers output
a00571c - Fix - Fix Needed: formatting error on PDF

78957e3 - Minor - Screenshots updated
7137830 - Minor - i18n: minor improvements
fb84472 - Minor - Improve README
af331dc - Minor - Improve README
bb5f8e5 - Minor - Improve README
ba7d8fd - Minor - Improve OWASP badge
33769f2 - Minor - Update screenshots and samples.

1.13

28 Oct 19:06
af2a329
Compare
Choose a tag to compare

77b5514 - Feature - New check: X-Frame-Options (Deprecated Values)
c081172 - Feature - New fingerprint header: 'X-PHP-Version'.
17fb47c - Feature - New fingerprint header: 'X-Commerce-Core'.
3468c5d - Feature - WIP: Show Software/Technology related to fingerprint header.
37bd0bf - Feature - WIP: Show Software/Technology related to fingerprint header.
2129c80 - Feature - 2 New Fingerprint headers.
62655e9 - Feature - WIP: Show Software/Technology related to fingerprint header.
57e484e - Feature - 8 new fingerprint headers.
2f838e7 - Feature - WIP: Show Software/Technology related to fingerprint header.
aeb857e - Feature - Complete!: Show Software/Technology related to fingerprint header.
3c96369 - Feature - 3 new fingerprint headers.
d81ce1d - Feature - 6 new fingerprint headers
5e2c580 - Feature - 2 new fingerprint headers
4e2e523 - Feature - 5 new fingerprint headers
a2807db - Feature - 2 new fingerprint headers.
53ee9c4 - Feature - 1 new fingerprint header
fe06b5c - Feature - 1 new fingerprint header

8103938 - Fix - Fix: X-Frame-Options checks.
cca3ce9 - Fix - Fix 'X-XSS-Protection' check output.
27293ff - Fix - Remove HTTP 403 error code: The headers are now returned correctly.

ef3d919 - Minor - Improve wording of advices.
852b8e0 - Minor - Improve 'Insecure Scheme' Content-Security-Policy reference.
f1e997b - Minor - Improve some insecure headers/values checks.
19956aa - Minor - Improve terminal output
f0118c2 - Minor - Minor improvements in wording and terminal output.
bdcea8d - Minor - Minor README improvements.
61020e7 - Minor - Improve Jive fingerprint header info.
90692ce - Minor - Simplify fingerprint output
c0400b6 - Minor - Improve 'Permission-Policy' output and spanish translations.
e2ad39d - Minor - Upgrade to CodeQL Action v2
774288f - Minor - Remove git checkout HEAD^2
30ddb62 - Minor - Update to Node.js 16 actions
4a319dd - Minor - CodeQL badge instead lgtm.com
7fa5463 - Minor - Improve badges descriptions
72e1c7a - Minor - Lil' badges fix.
af2a329 - Minor - Lil' badges fix.

1.12

07 Oct 17:09
Compare
Choose a tag to compare

7587d27 - Feature - New insecure check: CSP (Too Permissive Value). I will improve it.
b6af318 - Feature - 23 new fingerpint headers.
85d4ac6 - Feature - 11 new fingerprint headers.
ca06efb - Feature - 4 new fingerprint headers.
3d054ea - Feature - i18n: Spanish translation completed!.
74eb5f1 - Feature - 9 new fingerprint headers.
99edeed - Feature - i18n: looks like the Spanish translation is almost finished! :)
eee70ff - Feature - i18n: errors on analysis.

0ed7102 - Fix - Fix PDF formatting regarding Content-Security-Policy ref.
e886eac - Fix - Lil' fix regarding output.
87e4ca6 - Fix - Last batch of SonarLint improvements.
5dab914 - Fix - Second batch of SonarLint improvements.
ac4d7de - Fix - First batch of SonarLint improvements.
7d8828e - Fix - Remove dead code.
3f7ff72 - Fix - Fix Spanish text strings.
4092a7e - Fix - Fix HTML and PDF output.

285e84a - Minor - Simplified HTML formatting
2a32d77 - Minor - Reminder, and advice, needed.
5de8399 - Minor - i18n: improve spanish translation
1c26f61 - Minor - i18n: Improve spanish translation.
b6d188f - Minor - i18n: let's try with utf-8 encoding
bb532dc - Minor - Keep improving i18n.
d739c5f - Minor - Keep improving i18n.
0922c10 - Minor - Keep improving i18n.
cfd7dc3 - Minor - Keep improving i18n.
95425a0 - Minor - pep8online.com is no more.

1.11

09 Sep 17:48
Compare
Choose a tag to compare

ef3ec26 - Feature - First iteration to include new languages!!!! :)
7c6f2e4 - Feature - Improve PDF output (New dependency: fpdf2).
358da33 - Feature - Improve Spanish translation.
bb7c9f7 - Feature - Check for 'X-XSS-Protection' duplicated values.
da626d6 - Feature - Keep improving i18n
38a157f - Feature - Keep improving i18n.
0f99cfc - Feature - Keep improving i18n.
02e20f8 - Feature - Keep improving i18n.
980c456 - Feature - Keep improving i18n.
9f2bbae - Feature - Keep improving PDF output.
39b5595 - Feature - Keep improving PDF output.
4645567 - Feature - Keep improving PDF output.
0648bb9 - Feature - Bring back i18n :).
c6f0908 - Feature - Check for 'Strict-Transport-Security' duplicated values.
95129f3 - Feature - 'Expect-CT' header was deprecated.
ba68565 - Feature - Improve PDF sections code.
ff3142d - Feature - Analysis output to valid HTML5.
abf209e - Feature - Improve PDF Metadata info.
681edc8 - Feature - New Fingerprint header: 'X-MS-Version'.
9bb25ba - Feature - Latest iteration to improve PDF generation (for now!)
a84cbae - Feature - Improve Browser Compatibility output.
acfb38e - Feature - 3 New fingerprint headers.
921b912 - Feature - Add PDF document outline.
2176c4b - Feature - New Fingerprint header: 'X-Rocket-Nginx-Serving-Static'.
3772f08 - Feature - New Fingerprint header: 'Weglot-Translated'.

d5949b7 - Fix - Fix PDF output with response headers argument.
667245f - Fix - Reverse internationalization. Too many problems with PDF generation.
22418f4 - Fix - Remove Snyk's badge. They did not know how to configure it correctly.
cca4d4f - Fix - Fix 'Access-Control-Allow-Origin' check.
b36d97c - Fix - Workaround for 'dh key too small' SSL errors.

86b835e - Minor - Add new Language badge
9e30021 - Minor - Simplifying Spanish text strings
2a4dec4 - Minor - Update screenshots.
06a31de - Minor - Update README
2e45dfc - Minor - Minor fixes.
91eec93 - Minor - Lil' change to version.
9d538b8 - Minor - Update screenshots.
3e3ee5a - Minor - Update README.
d0f427c - Minor - Update README with new optional arguments.
c77948b - Minor - Update README with new optionsl arguments.
205bcae - Minor - Update PDF sample and screenshot.
cdc414a - Minor - Update screenshots.
2f742d7 - Minor - Update PDF sample & screenshot.
500dfea - Minor - Remove advices ... summary should be enough.

1.10

14 Aug 19:42
Compare
Choose a tag to compare

ccfd724 - Feature - 71 new fingerpint headers.
3ca9d38 - Feature - Add a summary at the end of the analysis.
9ddbccf - Feature - Add LGTM badge instead Codacy one.
6ba27bb - Feature - Improve deprecated/insecure description checks.
62b152f - Feature - Improve fingerprint check code.
4dd37fa - Feature - Improve guide code.
c20c95d - Feature - Improve insecure checks output.
3dc8b6f - Feature - Improve 'X-Content-Type-Options' insecure check.
19565d9 - Feature - New checks for duplicated headers/values of the same header.
da48b14 - Feature - New fingerprint header: 'Platform'.
70a32d3 - Feature - New fingerprint header: 'Processed-By'.
88c7b9d - Feature - New fingerprint header: 'X-Spdwp-Ngx'.
c43ff04 - Feature - New fingerprint headers: 'X-Vercel-Cache' and 'X-Vercel-ID'.
1c871a2 - Feature - New insecure check for 'Content-Security-Policy'.
59ac3b6 - Feature - Update and improve insecure/deprecated checks list.

4e1d6ea - Minor - Add Codacy Badge.
70cca35 - Minor - Add latests release badge.
15f2a09 - Minor - Add Snyk badge.
d276dc9 - Minor - Add OWASP badge.
d82b723 - Minor - Minor change to README badge.
8a6c606 - Minor - Peace.
438e148 - Minor - Remove extended ASCII chars.
b578516 - Minor - Update Code Of Conduct.
acd67f5 - Minor - Update Samples and Screenshots.

b424d04 - Fix - Better wording regarding insecure/deprecated checks.
a554bd4 - Fix - Fix 'Permissions-Policy' Features list.
729fb20 - Fix - Lil' change regarding '-' character.
d4ffb81 - Fix - Lil' fix.
7dccc07 - Fix - Lil' README fix.

1.9

24 Jul 18:11
Compare
Choose a tag to compare
1.9

2938c93 - Feature - New insecure check: 'X-Robots-Tag'.
993619f - Feature - New fingerprint header: 'X-Litespeed-Alt-Svc'.
b3cdd5c - Feature - New insecure check: 'Public-Key-Pins in HTTP'.
cacf6e9 - Feature - 5 new fingerprint header checks.
f3ae094 - Feature - New insecure check: 'Basic WWW-Authenticate in HTTP'.
2613887 - Feature - New missing check: 'Content-Type'.
b0106dd - Feature - New check: 'Expect-CT in HTTP'.
5d015d2 - Feature - New fingerprint header: 'X-Wix-Request-Id'.
0a5c1ae - Feature - 5 New fingerprint headers (Flywheel related).
fe25d27 - Feature - Add feature about available references.
a3fe729 - Feature - 10 new fingerprint checks: HubSpot related.
d4927dc - Feature - Add new 'Content-Security-Policy' check.
82b2ef0 - Feature - New check: 'Strict-Transport-Security' in HTTP.
f2f5c8d - Feature - New fingerprint header: 'X-Magnolia-Registration'.
b0354f8 - Feature - New check for 'Referrer-Policy' insecure value.
8f16cab - Feature - New deprecated header: 'X-Download-Options'.
18002b5 - Feature - Check for valid 'Permissions-Policy' features.
77b28ae - Feature - Show 'Content-Security-Policy' deprecated directives.
fc4e4b7 - Feature - Show deprecated directives.
e8f53be - Feature - Detail insecure HTTP Methods enabled.

bbcead0 - Minor - Improve check for 'Permissions-Policy' valid features.
6ef7a7b - Minor - Improve HTML output.
bfaf396 - Minor - Let's analyze URLs, even if they require authentication.
6b0310d - Minor - Update 'X-Download-Options' reference.
d06e0bf - Minor - Tune 'Content-Security-Policy' check.
690cd4c - Minor - Justification of the latest changes: notices and SSL certificates.
1208ded - Minor - Disable SSL certificate verification and continue with SSL errors.
af33d0c - Minor - Add reference to 'Permission-Policy' check.
3a4f04c - Minor - Let's try to solve HTTP 403 problem.
dd909b2 - Minor - Improve 'X-Runtime' info.
5529700 - Minor - Align 'Permissions-Policy' info.
acd02a6 - Minor - Improve Empty HTTP Response Headers output.
ce786a4 - Minor - Improve 'Cache-Control' information.
984638a - Minor - Improve 'Referrer-Policy' information.
7413381 - Minor - Improve 'X-Pad' information.
fc747d7 - Minor - Improve 'Timing-Allow-Origin' information.
ddd9e27 - Minor - Improve 'X-Permitted-Cross-Domain-Policies' information.
cf229f4 - Minor - Improve 'Set-Cookie' information.
ee7b2a1 - Minor - Improve 'Permissions-Policy' information.
fc4f1c4 - Minor - Improve 'Strict-Transport-Security' information.
e3b10a5 - Minor - Improve 'X-Frame-Options' information.
b911034 - Minor - Improve 'X-Content-Type-Options' information.
e767341 - Minor - Improve 'Access-Control-Allow-Origin' information.

1.8

18 Jun 15:50
Compare
Choose a tag to compare
1.8

Feature. Added 2 new checks for fingerprint headers: 'X-Nginx-Cache', 'X-Nextjs-Cache'.
Feature. Bump Python required version >= 3.6.
Feature. Check for incorrect 'Permission-Policy' values.
Feature. Added browser compatibility check for enabled security headers.
Fix. Improve info about "Deprecated Headers and Insecure values".
Fix. Improved HTTP 404 parsing (via "exceptions.ConnectionError").
Fix. Improve PDF output.
Minor. Add caniuse.com license details (CC-BY-4.0).
Minor. Add OWASP reference.
Minor. Update screenshots and sample files.