James • Edited on

I came here to literally add this - nice job @joehonton !

It's good that Helmet exposes new developers to these headers, but it's up to each developer to:

  • Research potential impacts of adding specific headers to your responses.
  • Research potential impacts of omitting specific headers from your responses.

Don't just "add helmet & done"!

Siddharth Udeniya Author

I think I covered this in the very first two quoted lines of this post ;)! Helmet is not a silver bullet indeed.