luckyframework / authentic

An authentication library for Lucky projects
MIT License
14 stars 13 forks source link

X-Frame-Options header is not included #11

Closed snadon closed 6 years ago

snadon commented 6 years ago

X-Frame-Options header is not included in the HTTP response to protect against ’ClickJacking’ attacks.

paulcsmith commented 6 years ago

@joeldrapper this one would be handled in the main Lucky repo. I imagine this one and the other would all be part of a single SecureBrowserHeaders handler in Lucky

paulcsmith commented 6 years ago

Closing in favor of https://github.com/luckyframework/lucky/issues/565