This https://securityheaders.com/?q=http%3A%2F%2Fsecurityheaders.com report shows that no security headers is set over Http, while redirecting to Https

How bad/good/meh is this?
Should we strive to implement security headers even during redirections or is it no longer useful?