Add additional security headers

This commit is contained in:
regalijan 2023-10-19 16:50:13 -04:00
parent 6f250ca0b5
commit b5135ce6bf
Signed by: regalijan
GPG Key ID: 5D4196DA269EF520

View File

@ -102,10 +102,13 @@ async function setHeaders(context: RequestContext) {
"Wintervale", "Wintervale",
]; ];
response.headers.set("Permissions-Policy", "clipboard-write=(self), interest-cohort=()");
response.headers.set("Referrer-Policy", "same-origin");
response.headers.set( response.headers.set(
"RTV", "RTV",
rtvValues[Math.round(Math.random() * (rtvValues.length - 1))] rtvValues[Math.round(Math.random() * (rtvValues.length - 1))]
); );
response.headers.set("X-Frame-Options", "SAMEORIGIN");
response.headers.set("X-XSS-Protection", "1; mode=block"); response.headers.set("X-XSS-Protection", "1; mode=block");
return response; return response;