HTTP Response Headers
2,339 sites
Security covered
Drupal 10–11
This module allows administrators to set custom HTTP response headers for specific pages, content types, or user roles. It provides flexibility in controlling headers based on various visibility rules and can be extended to support other modules.
What is the HTTP Response Headers module?
This module allows to set HTTP response headers (both standard and non-standard) on pages by various visibility rule settings. Currently the headers can be set by path, content type and user role.
Key Features
- Configure list of allowed headers
- Ability to configure HTTP headers per content type.
- Ability to configure HTTP headers per page.
- Ability to configure HTTP headers per user role.
- Ability to configure HTTP headers per response status.
- The module is using conditions plugins and can be extended. This potentially should also work with Groups module and other modules which provide condition plugins.
Features in Drupal 7 version may vary from Drupal 10 version.
About HTTP security headers
Depends on
Dependencies of the latest stable release
No dependencies recorded for this project.
Required by
Tracked projects that depend on this one
No tracked projects depend on this one yet.
Activity
Releases
| Version | Type | Core | Notes | Release date | |
|---|---|---|---|---|---|
| 3.0.10 | Stable | 10–11 | Jul 15, 2026 |