Website Security Hardening & Headers by Shayla Swarbrick Website Security Hardening & Headers by Shayla Swarbrick

Website Security Hardening & Headers

Shayla  Swarbrick

Shayla Swarbrick

Security Hardening & Header Optimization

Achieved an A+ security headers rating through comprehensive HTTP header configuration and security hardening across client websites.

What Was Done

Configured strict Content-Security-Policy headers
Implemented X-Frame-Options, X-Content-Type-Options, and Referrer-Policy headers
Set up Strict-Transport-Security (HSTS) with proper max-age values
Configured Permissions-Policy to restrict unnecessary browser API access
Achieved A+ rating on Security Headers scan

Technical Approach

Security headers were configured at the server level through a combination of .htaccess rules, Cloudflare page rules, and WordPress security plugin configuration. Each header was tested individually to ensure it didn't break existing site functionality before being deployed to production. The A+ rating confirms that all major security header categories are properly configured and actively protecting against common web vulnerabilities like clickjacking, MIME sniffing, and cross-site scripting.
Like this project

Posted Jun 15, 2026

Achieved an A+ security headers rating through HTTP header configuration, HSTS, CSP, and Permissions-Policy hardening across client WordPress sites.