LibreY

- privacy respecting meta search engine
git clone git://git.acid.vegas/LibreY.git
Log | Files | Refs | Archive | README | LICENSE

commit 0c7224a67aec4505bc4b8ff3dd4f61ed457fb704
parent 90f07bceeba904e12fc68e0e7b6a5105eb184908
Author: Revvy <nothingtohide@revvy.de>
Date: Fri, 1 Sep 2023 08:19:15 -0400

some security headers

Diffstat:
Mdocker/nginx.conf | 4++++

1 file changed, 4 insertions(+), 0 deletions(-)

diff --git a/docker/nginx.conf b/docker/nginx.conf
@@ -2,6 +2,10 @@ server {
     listen       8080;
     server_name  ${OPEN_SEARCH_HOST_FOR_NGINX} localhost;
 
+    add_header Content-Security-Policy "default-src 'none'; style-src 'self'; img-src 'self'";
+    add_header X-Frame-Options "DENY" always;
+    add_header X-Content-Type-Options "nosniff";
+
     root   /var/www/html;
     index  index.php;