Charlene wants to use the security features built into HTTP headers. Which of the following is not an HTTP header security option? 
a) Requiring transport security 
b) Preventing cross-site scripting 
c) Disabling SQL injection 
d) Helping prevent MIME sniffing