Add frame ancestors deny to content security policy

This commit is contained in:
2024-10-28 13:02:55 +10:30
parent 1001c2d840
commit 813748fbd3

View File

@@ -1,3 +1,3 @@
/*
Content-Security-Policy: default-src 'self'
Content-Security-Policy: default-src 'self'; frame-ancestors 'none'
X-Content-Type-Options: nosniff