Add headers.

This commit is contained in:
James Cole 2021-04-08 12:27:54 +02:00
parent 849c7dfe02
commit a709596ccb
No known key found for this signature in database
GPG Key ID: B5669F9493CDE38D

View File

@ -98,6 +98,9 @@ class SecureHeaders
$response->header('X-XSS-Protection', '1; mode=block');
$response->header('X-Content-Type-Options', 'nosniff');
$response->header('Referrer-Policy', 'no-referrer');
$response->header('X-Download-Options', 'noopen');
$response->header('X-Permitted-Cross-Domain-Policies', 'none');
$response->header('X-Robots-Tag', 'none');
$response->header('Feature-Policy', implode('; ', $featurePolicies));
return $response;