Add headers.

This commit is contained in:
James Cole
2021-04-08 12:27:54 +02:00
parent 849c7dfe02
commit a709596ccb

View File

@@ -98,6 +98,9 @@ class SecureHeaders
$response->header('X-XSS-Protection', '1; mode=block');
$response->header('X-Content-Type-Options', 'nosniff');
$response->header('Referrer-Policy', 'no-referrer');
$response->header('X-Download-Options', 'noopen');
$response->header('X-Permitted-Cross-Domain-Policies', 'none');
$response->header('X-Robots-Tag', 'none');
$response->header('Feature-Policy', implode('; ', $featurePolicies));
return $response;