1
0
mirror of https://github.com/PrivSec-dev/privsec.dev synced 2024-11-17 12:01:35 -05:00

Update netlify.toml

Signed-off-by: Tommy <contact@tommytran.io>
This commit is contained in:
Tommy 2022-07-22 00:34:38 -04:00 committed by tommytran732
parent c7e3c1e7c1
commit e0a66c16fd
No known key found for this signature in database
GPG Key ID: 060B29EB996BD9F2

View File

@ -2,7 +2,7 @@
for = "/*" for = "/*"
[headers.values] [headers.values]
Strict-Transport-Security = "max-age=63072000; includeSubDomains; preload" Strict-Transport-Security = "max-age=63072000; includeSubDomains; preload"
Content-Security-Policy = "default-src 'none'; connect-src 'self'; img-src 'self'; script-src-elem 'self'; style-src-elem 'self'; frame-src www.youtube-nocookie.com; form-action 'none'; frame-ancestors 'none'; block-all-mixed-content; base-uri 'none'" Content-Security-Policy = "default-src 'none'; connect-src 'self'; img-src 'self'; script-src-elem 'self'; style-src-elem 'self'; frame-src https://www.youtube-nocookie.com; form-action 'none'; frame-ancestors 'none'; block-all-mixed-content; base-uri 'none'"
X-Content-Type-Options = "nosniff" X-Content-Type-Options = "nosniff"
Referrer-Policy = "no-referrer" Referrer-Policy = "no-referrer"
Cross-Origin-Opener-Policy = "same-origin" Cross-Origin-Opener-Policy = "same-origin"