The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

Strict transport security not enforced without request/response

Tiago | Last updated: May 31, 2017 12:55PM UTC

The Strict transport security not enforced issues do not show a request/response. This does not make any sense, there was at least one response that had no HSTS header for Burp to show that issue, so it makes sense to report which response cause that. Actually you could report that for all the responses that lack the header, similar to what is done to other issues.

PortSwigger Agent | Last updated: May 31, 2017 01:02PM UTC