try out csp (#2215)

This commit is contained in:
Peter Hedenskog 2018-11-19 09:19:49 +01:00 committed by GitHub
parent b25b30fbe6
commit 9569cbdee5
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 2 additions and 1 deletions

View File

@ -2,7 +2,8 @@
X-Content-Type-Options: nosniff
x-frame-options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Referrer-Policy: no-referrer
Referrer-Policy: no-referrer
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'; child-src 'https://www.youtube.com';
/img/*
Cache-Control: public, max-age=360000