rack_protect

My favorite rack middleware in one package.

Notes:

1) HTTP\_HOST: Unreliable because it is sent by client. Use SERVER\_NAME