- CSP is now applied to all HTML pages
- The policies are configured in the config/content-security-profile.json file
- package.json dependencies, as of April 2021
- added hostPort parameter
- removed body-parser as independent npm module
- app security check fix for referrer in header
- Content-Security-Policy header
- webPreferences: now specifying contextIsolation and enableRemoteModule