We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
2 parents 4d78e47 + b4ae28b commit c7a2bb6Copy full SHA for c7a2bb6
1 file changed
static/_header
@@ -0,0 +1,9 @@
1
+/*
2
+ Strict-Transport-Security: max-age=31536000; includeSubDomains; preload
3
+ X-Content-Type-Options: nosniff
4
+ Referrer-Policy: strict-origin-when-cross-origin
5
+ Permissions-Policy: geolocation=(), microphone=(), camera=()
6
+ Content-Security-Policy: default-src 'self'; script-src 'self'; style-src 'self'; img-src 'self'; font-src 'self'; object-src 'none'; base-uri 'self'; frame-ancestors 'none'
7
+ Cross-Origin-Opener-Policy: same-origin
8
+ Cross-Origin-Embedder-Policy: require-corp
9
+ X-Frame-Options: DENY
0 commit comments