docs: csp tuning
This commit is contained in:
parent
7531399688
commit
dc3d7c409e
|
|
@ -3,7 +3,13 @@
|
|||
x-frame-options: SAMEORIGIN
|
||||
X-XSS-Protection: 1; mode=block
|
||||
Referrer-Policy: no-referrer
|
||||
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'; child-src https://www.youtube.com;
|
||||
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'
|
||||
|
||||
/search/*
|
||||
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'unsafe-inline';
|
||||
|
||||
/video/*
|
||||
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'; child-src https://www.youtube.com; img-src https://i.ytimg.com;
|
||||
|
||||
/img/*
|
||||
Cache-Control: public, max-age=360000
|
||||
Loading…
Reference in New Issue