Difference between revisions of "Secure HTTP Headers"
Jump to navigation
Jump to search
(Created page with "{code} HTTP::respond 301 Location "https://exampe.com[HTTP::uri]" \ Strict-Transport-Security "max-age=31536000" \ Content-Security-Policy "default-src 'self...") |
(No difference)
|
Revision as of 01:08, 3 March 2022
{code}
HTTP::respond 301 Location "https://exampe.com[HTTP::uri]" \ Strict-Transport-Security "max-age=31536000" \ Content-Security-Policy "default-src 'self'; script-src 'self'; style-src 'self'; font-src 'self'; img-src 'self'; frame-src 'self'; upgrade-insecure-requests" \ Referrer-Policy "strict-origin" \ X-Frame-Options "DENY" \ Permissions-Policy "geolocation=(),midi=(),sync-xhr=(),microphone=(),camera=(),magnetometer=(),gyroscope=(),fullscreen=(self),payment=()" \ X-Content-Type-Options "nosniff"
{code}