authenticate: add CSP headers to this service only (#120)

This commit is contained in:
Bobby DeSimone 2019-05-14 22:29:24 -07:00 committed by GitHub
parent cfac5f10ff
commit 27d4683662
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23
3 changed files with 13 additions and 8 deletions

View file

@ -68,8 +68,6 @@ var defaultOptions = &Options{
"X-Frame-Options": "SAMEORIGIN",
"X-XSS-Protection": "1; mode=block",
"Strict-Transport-Security": "max-age=31536000; includeSubDomains; preload",
"Content-Security-Policy": "default-src 'none'; style-src 'self' 'sha256-pSTVzZsFAqd2U3QYu+BoBDtuJWaPM/+qMy/dBRrhb5Y='; img-src 'self';",
"Referrer-Policy": "Same-origin",
},
}