Sha256: 7c21561e942e0744600ad0224a1d082380cb97d96b9774b08be2a2ff115a96d8
Contents?: true
Size: 552 Bytes
Versions: 9
Compression:
Stored size: 552 Bytes
Contents
::SecureHeaders::Configuration.configure do |config| config.hsts = { :max_age => 10.years.to_i.to_s, :include_subdomains => false } config.x_frame_options = 'SAMEORIGIN' config.x_content_type_options = "nosniff" config.x_xss_protection = {:value => 1, :mode => 'block'} config.x_permitted_cross_domain_policies = 'none' csp = { :default_src => "'self'", :script_src => "'self' nonce", :report_uri => 'somewhere', :script_hash_middleware => true, :enforce => false # false means warnings only } config.csp = csp end
Version data entries
9 entries across 9 versions & 1 rubygems