komuw / ong

ong, is a Go http toolkit.
MIT License
16 stars 4 forks source link

add ability to specify CSP, Content-Security-Policy #445

Open komuw opened 4 months ago

komuw commented 4 months ago

https://github.com/komuw/ong/blob/07606656415a32bfc40c6f5e8737bd0187251b6b/middleware/security.go#L56-L74

komuw commented 3 months ago

https://github.com/komuw/ong/blob/f2c39ac4de331f892235b8c75470fe2fb6dda1e9/middleware/csp.go#L70-L74

komuw commented 3 months ago

If we do this, maybe we should also be able to configure the headers; https://github.com/komuw/ong/blob/f2c39ac4de331f892235b8c75470fe2fb6dda1e9/middleware/csp.go#L70-L109

komuw commented 3 months ago

https://observatory.mozilla.org/analyze/dushed.com