
Abgeschlossen
Veröffentlicht
Bezahlt bei Lieferung
I just ran an online scan on my site and every security header came back with a big red “FAIL.” I want those warnings gone and the proper directives in place without breaking any existing functionality. Headers currently missing or incorrectly configured: • Content-Security-Policy (CSP) • Strict-Transport-Security (HSTS) • X-Content-Type-Options • X-Frame-Options • Referrer-Policy • Permissions-Policy Scope – Analyse the current response headers, server configuration and any CDN or reverse-proxy layer I’m using. – Implement each header with sensible, industry-standard values (I’ll review before go-live). – Make sure the site still renders correctly on modern browsers after CSP is tightened. – Re-run the same scanner and provide a screenshot or report showing PASS for every header above. Tech environment is typical LAMP/NGINX; if you need SSH or cPanel access I can provide it. You’re free to use tools such as curl, [login to view URL], Observatory, etc., during testing. Deliverable A short change log of what you edited (virtual host, .htaccess, Nginx block, Cloudflare rules, etc.) and the final passing report.
Projekt-ID: 40109252
18 Vorschläge
Remote Projekt
Aktiv vor 1 Monat
Legen Sie Ihr Budget und Ihren Zeitrahmen fest
Für Ihre Arbeit bezahlt werden
Skizzieren Sie Ihren Vorschlag
Sie können sich kostenlos anmelden und auf Aufträge bieten
18 Freelancer bieten im Durchschnitt ₹1.478 INR für diesen Auftrag

hello sir, may I know your website name so that I can take a look? I am ready to fix all security headers. Thanks
₹2.250 INR in 1 Tag
7,2
7,2

Hi, I am Wordpress,PHP programmer having 10 years of experience. I am very good in wordpress,php,mysql,joomla.
₹1.500 INR in 3 Tagen
7,4
7,4

Hello, This is a very common issue, and it’s absolutely fixable without breaking your site if it’s done carefully. I can audit your current response headers across Apache/Nginx, PHP, and any CDN or proxy layer, then implement all missing security headers with sensible, modern defaults that pass scanners while keeping your site fully functional. How I’d handle it • Inspect current headers using curl and browser tools • Review server config, virtual hosts, .htaccess, and any CDN rules • Add and tune: CSP, HSTS, X-Content-Type-Options, X-Frame-Options, Referrer-Policy, Permissions-Policy • Start CSP in a safe, non-breaking mode and tighten it carefully • Validate rendering and functionality in modern browsers Verification & handover • Re-run the same scanner you used (SecurityHeaders, Observatory, etc.) • Provide a passing report or screenshot for every header • Share a short changelog showing exactly what was modified and where I work regularly with LAMP/NGINX stacks and cPanel-based servers, and I’m careful about security changes that can accidentally block assets or scripts. Once you share access details, I can get started immediately and have this cleaned up quickly. Looking forward to collaborating on this. Regards, Sumit Joshi
₹1.050 INR in 7 Tagen
4,4
4,4

Hi, I can take care of fully fixing your missing security headers and get your site to a clean PASS on security scanners—without breaking layout, scripts, or functionality. I’ve done this exact work on LAMP and NGINX setups, including sites behind CDNs or reverse proxies, where headers often conflict or get overridden. How I’ll approach it Audit current headers using curl and scanner tools to see what’s missing, duplicated, or overridden Check server config (.htaccess, Nginx blocks, vhosts) and any CDN/proxy layer (Cloudflare, etc.) Implement industry-standard, sensible defaults for: Content-Security-Policy (with a safe, non-breaking baseline) Strict-Transport-Security (HSTS) X-Content-Type-Options X-Frame-Options Referrer-Policy Permissions-Policy Tighten CSP carefully and test rendering and scripts in modern browsers Adjust iteratively until everything passes cleanly What you’ll receive All headers correctly configured and active Screenshot or report showing PASS for every listed header Short change log detailing exactly what was edited (server config, .htaccess, Nginx, CDN rules) Clear notes so changes are easy to maintain or reapply later I work methodically and won’t apply “copy-paste” headers that break sites. If you can provide SSH or cPanel access, I can start immediately and turn this around quickly. Happy to get those red FAILs gone.
₹1.500 INR in 5 Tagen
3,9
3,9

I can resolve all missing and failing security headers cleanly and without impacting your site’s functionality. I regularly harden LAMP and NGINX environments and am well-versed with CSP tuning, HSTS rollout, and browser compatibility checks. My approach will be: • Audit current response headers, server config, and any CDN/reverse proxy (Cloudflare, etc.) • Implement all required headers — CSP, HSTS, X-Content-Type-Options, X-Frame-Options, Referrer-Policy, and Permissions-Policy — using industry-standard, production-safe values • Gradually tighten CSP to avoid breaking scripts, fonts, or third-party assets • Validate behavior across modern browsers after changes • Re-run the same security scanners (SecurityHeaders, Observatory, curl) to confirm full PASS status I will work directly at the correct layer (.htaccess, NGINX server block, virtual host, or CDN rules), based on your setup. Before go-live, I can share the proposed directives for your approval. Deliverables include a clean passing report/screenshot and a short change log documenting exactly what was modified. SSH or cPanel access is fine. Happy to start immediately.
₹5.000 INR in 3 Tagen
3,0
3,0

I have reviewed the details of "Fix Missing Security Headers" and I am sure I can complete it successfully. I have solid experience in Backend, Frontend, Video Games, and Animation. Quality and punctuality guaranteed. Shall we chat?
₹2.000 INR in 1 Tag
2,6
2,6

Hello Sir , I can help you to resolve your security header issue. just share with me your ftp access and website url. and your seo issue in doc file. Thanks, Paresh
₹1.200 INR in 1 Tag
1,2
1,2

Getting a perfect fit for your project is as easy as choosing someone who gets straight to the point and delivers. I understand you need clean, professional, and automated security headers like Content-Security-Policy, Strict-Transport-Security, and others properly integrated without breaking any functionality. Ensuring a seamless, user-friendly experience while tightening your site's security is key. I offer expert LAMP/NGINX server configuration and header management. While I am new to Freelancer, I have tons of experience and have done other projects off site involving security headers and reverse proxy setups. I would love to chat more about your project! Regards, Nadia Du Preez
₹1.150 INR in 14 Tagen
0,0
0,0

Hello Kush J., We would like to grab this opportunity and will work till you get 100% satisfied with our work. We are an expert team which have many years of experience on PHP, Linux, Web Security, Apache, Web Development, Network Security, LAMP, cPanel Lets connect in chat so that We discuss further. Thank You
₹600 INR in 7 Tagen
0,0
0,0

I can audit and implement all missing or misconfigured security headers so your site passes security scans without breaking functionality. Scope Review current headers, server config, and any CDN/reverse proxy Implement best-practice values for CSP, HSTS, X-Content-Type-Options, X-Frame-Options, Referrer-Policy, and Permissions-Policy Carefully tune and test CSP to ensure the site renders correctly Re-run scanners and provide a passing report or screenshots Deliverables Brief change log (Apache/Nginx, .htaccess, CDN, etc.) Final scan showing PASS for all listed headers Experienced with LAMP, Nginx/Apache, cPanel, PHP, and web security. SSH or cPanel access is fine. Thanks
₹1.050 INR in 4 Tagen
0,0
0,0

I am a freelance web and infrastructure security consultant with hands-on experience hardening LAMP and NGINX-based environments, including setups fronted by CDNs and reverse proxies. I routinely work with clients who encounter failed security header scans and need correct, production-safe directives applied without impacting existing functionality. For this engagement, I will first analyze your current response headers, web server configuration, and any intermediary layers (NGINX, Apache, Cloudflare, or similar), then implement industry-standard values for CSP, HSTS, X-Content-Type-Options, X-Frame-Options, Referrer-Policy, and Permissions-Policy, sharing the proposed directives for review before go-live. I take a careful, test-driven approach—especially with Content-Security-Policy—to ensure the site renders correctly across modern browsers while eliminating the scanner warnings. The deliverables will include a clear change log of all edits made (virtual host, .htaccess, NGINX blocks, or CDN rules) and a final verification report with screenshots showing PASS results for all listed headers using tools such as curl and security header scanners.
₹1.000 INR in 1 Tag
0,0
0,0

As a Professional Web application pentester, Holding EJPT as proof, i have enough skills to help you fix everyting with minimal time and best results, as a side note, this website is short from full report, i have my own tools to conduct a more complete scan and provide you the results for free. Plus : Those configuration flagged as "FAIL" are all server based, besides CSP. everything is fixable in a day.
₹700 INR in 4 Tagen
0,0
0,0

New Delhi, India
Mitglied seit Okt. 28, 2025
₹600-1500 INR
₹600-1500 INR
₹600-1500 INR
$10-30 USD
₹1500-12500 INR
₹12500-37500 INR
$10-50 AUD
₹600-3000 INR
$10-30 USD
$10-30 USD
₹37500-75000 INR
₹250000-500000 INR
$10-30 USD
$2-8 USD / Stunde
$10-30 USD
₹75000-150000 INR
$30-250 USD
₹100-400 INR / Stunde
$8-15 USD / Stunde
₹1800-2500 INR
$10-30 USD
$250-750 USD
$10-30 USD
₹1500-12500 INR
£20-250 GBP