= v6.1.0 =
* Improvement: CSP policy for back and front-end separate
* Improvement: also allow non-recommended X-XSS options
* Improvement: frame ancestors allow other values than 'none'
= 6.0.4 =
* New: automatically detect wrong Security Header values from other sources, and duplicate headers
* Improvement: auto enable Insecure Requests header only when SSL enabled
* Improvement: remove unnecessary notices load in licenses block
= 5.5.3 =
* Fix: advanced-headers.php did not generated CSP correctly
* Fix: Browsers support for new report-to reporting attribute not good enought to use it yet.