hirosystems / docs

Hiro developer documentation website
https://docs.hiro.so/
34 stars 55 forks source link

Add `Cross-Origin-Opener-Policy: same-origin` #717

Closed beguene closed 1 month ago

beguene commented 1 month ago

All responses from docs.hiro.so should have

Cross-Origin-Opener-Policy: same-origin

To prevent Cross-site leaks https://xsleaks.dev/docs/defenses/opt-in/coop/

to verify

curl -I -L https://docs.hiro.so/

ryanwaits commented 1 month ago

closing https://github.com/hirosystems/docs/pull/718