strugee / strugee.github.com

Personal website & blog
https://strugee.net
GNU Affero General Public License v3.0
2 stars 4 forks source link

Deploy Content Security Policy #108

Open strugee opened 6 years ago

strugee commented 6 years ago

Here's a start: Content-Security-Policy-Report-Only: "default-src 'self'; object-src 'none'; media-src *; frame-src 'none'; connect-src 'none'; report-uri https://strugee.report-uri.com/r/d/csp/enforce"