CARVIEW |
Select Language
HTTP/2 302
server: nginx
date: Mon, 06 Oct 2025 16:14:49 GMT
content-type: text/html; charset=utf-8
location: https://foundation.wikimedia.org/wiki/Special:MyLanguage/Security
x-safe-redirect-manager: true
x-safe-redirect-id: 57572
x-redirect-by: Safe Redirect Manager
x-rq: bom3 0 30 9980
x-cache: MISS
strict-transport-security: max-age=106384710;includeSubdomains;preload
HTTP/2 200
date: Mon, 06 Oct 2025 16:14:49 GMT
server: mw-web.codfw.main-69c9855868-vvhnp
x-content-type-options: nosniff
content-security-policy-report-only: script-src 'unsafe-eval' blob: 'self' meta.wikimedia.org *.wikimedia.org *.wikipedia.org *.wikinews.org *.wiktionary.org *.wikibooks.org *.wikiversity.org *.wikisource.org wikisource.org *.wikiquote.org *.wikidata.org *.wikifunctions.org *.wikivoyage.org *.mediawiki.org 'unsafe-inline' auth.wikimedia.org; default-src 'self' data: blob: upload.wikimedia.org https://commons.wikimedia.org meta.wikimedia.org *.wikimedia.org *.wikipedia.org *.wikinews.org *.wiktionary.org *.wikibooks.org *.wikiversity.org *.wikisource.org wikisource.org *.wikiquote.org *.wikidata.org *.wikifunctions.org *.wikivoyage.org *.mediawiki.org wikimedia.org en.wikipedia.org en.wikibooks.org en.wikinews.org en.wikiquote.org en.wikisource.org en.wikiversity.org en.wikivoyage.org en.wiktionary.org www.mediawiki.org api.wikimedia.org commons.wikimedia.org incubator.wikimedia.org species.wikimedia.org wikimania.wikimedia.org www.wikidata.org www.wikifunctions.org auth.wikimedia.org; style-src 'self' data: blob: upload.wikimedia.org https://commons.wikimedia.org meta.wikimedia.org *.wikimedia.org *.wikipedia.org *.wikinews.org *.wiktionary.org *.wikibooks.org *.wikiversity.org *.wikisource.org wikisource.org *.wikiquote.org *.wikidata.org *.wikifunctions.org *.wikivoyage.org *.mediawiki.org wikimedia.org 'unsafe-inline'; object-src 'none'; report-uri /w/api.php?action=cspreport&format=json&reportonly=1
content-type: text/html; charset=UTF-8
content-encoding: gzip
age: 2
accept-ranges: bytes
x-cache: cp5017 miss, cp5017 pass
x-cache-status: pass
server-timing: cache;desc="pass", host;desc="cp5017"
strict-transport-security: max-age=106384710; includeSubDomains; preload
report-to: { "group": "wm_nel", "max_age": 604800, "endpoints": [{ "url": "https://intake-logging.wikimedia.org/v1/events?stream=w3c.reportingapi.network_error&schema_uri=/w3c/reportingapi/network_error/1.0.0" }] }
nel: { "report_to": "wm_nel", "max_age": 604800, "failure_fraction": 0.05, "success_fraction": 0.0}
set-cookie: WMF-Last-Access=06-Oct-2025;Path=/;HttpOnly;secure;Expires=Fri, 07 Nov 2025 12:00:00 GMT
x-client-ip: 134.209.151.76
cache-control: private, s-maxage=0, max-age=0, must-revalidate, no-transform
vary: Accept-Encoding,User-Agent
set-cookie: GeoIP=IN:KA:Bengaluru:12.98:77.59:v4; Path=/; secure; Domain=.wikimedia.org
set-cookie: NetworkProbeLimit=0.001;Path=/;Secure;SameSite=None;Max-Age=3600
set-cookie: WMF-Uniq=v6Vi_71_z0HQgfKpcnPkxgKEAAAAAFvdsDMwGh4jViqSt0PD7qyuKmCkvX6zZifE;Domain=foundation.wikimedia.org;Path=/;HttpOnly;secure;SameSite=None;Expires=Tue, 06 Oct 2026 00:00:00 GMT
x-analytics:
Security - Wikimedia Foundation Governance Wiki
Jump to content
Contents
Security
Tools
Actions
General
Print/export
In other projects
Appearance
From Wikimedia Foundation Governance Wiki
Other languages:
Wikimedia Foundation Governance Wiki (foundation.wikimedia.org) is the canonical location for public security policy. Content on this wiki relates to the Wikimedia Foundation hosted wikis, and related ecosystem.
To report security bugs, vulnerabilities or other issues please follow our process.
Related Security Content
Project | Use by Product Safety and Integrity |
---|---|
mediawiki.org | General content for Policy, SOPs, etc. PSI team page. |
meta.wikimedia.org | Policy and other content for translation. |
office.wikimedia.org | Sensitive or private content. Must have an NDA and appropriate access. |
wikitech.wikimedia.org | Procedural or instructional material that is not training. |
foundation.wikimedia.org | Canonical location for Policy |
Security