- Get link
- X
- Other Apps
Cloudflare Header Security
Rules -> Trasformation Rules -> Modify Response HeaderSet Static - X-Frame-Options - SAMEORIGIN
Set Static - Content-Security-Policy - script-src 'self' https://googleapis.com; 'img-src *';
Set Static - Permissions-Policy - accelerometer=(), ambient-light-sensor-(), autoplay=(), battery=(), camera=(), cross-origin-isolated=(), display-capture=(), document-domain=(), encrypted-media=(), execution- while-not-rendered=(), execution-while-out-of-viewport-(), fullscreen=(), geolocation=(), gyroscope=(), keyboard-map-(), magnetometer=0), microphone=(), midi=(), navigation-override=(), payment (), picture-in-picture-(), publickey-credentials-get=(), screen-wake-lock=(), sync-xhr=(), usb-(), web-share=(0)
Set Static - Referrer-Policy - same-origin
Set Static - Strict-Transport-Security - max-age=31536000; includeSubDomains
Set Static - X-Permitted-Cross-Domain-Policies - none
Set Static - X-XSS-Protection - 1; mode=block
Set Static - X-Content-Type-Options - nosniff
Comments
Post a Comment