Sha256: 200f10c26a34859ba5fbf850322c4f67378686aed81cf66fb9548f5fcd63c86b

Contents?: true

Size: 528 Bytes

Versions: 9

Compression:

Stored size: 528 Bytes

Contents

::SecureHeaders::Configuration.configure do |config|
  config.hsts = { :max_age => 10.years.to_i.to_s, :include_subdomains => false }
  config.x_frame_options = 'DENY'
  config.x_content_type_options = "nosniff"
  config.x_xss_protection = {:value => 0}
  config.x_permitted_cross_domain_policies = 'none'
  csp = {
    :default_src => "'self'",
    :script_src => "'self' nonce",
    :report_uri => 'somewhere',
    :script_hash_middleware => true,
    :enforce => false # false means warnings only
  }

  config.csp = csp
end

Version data entries

9 entries across 9 versions & 1 rubygems

Version Path
secure_headers-2.5.3 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.5.2 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.5.1 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.5.0 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.4.4 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.4.3 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.4.2 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.4.1 fixtures/rails_4_1_8/config/initializers/secure_headers.rb
secure_headers-2.4.0 fixtures/rails_4_1_8/config/initializers/secure_headers.rb