Add missing Cross-Origin-Resource-Policy header - fixes #3
This commit is contained in:
@ -42,6 +42,7 @@ header_remove('X-Frame-Options');
|
|||||||
header("Content-Security-Policy: base-uri 'self'; default-src 'none'; frame-ancestors '*'");
|
header("Content-Security-Policy: base-uri 'self'; default-src 'none'; frame-ancestors '*'");
|
||||||
header('Content-Type: image/gif');
|
header('Content-Type: image/gif');
|
||||||
header('Access-Control-Allow-Origin: *');
|
header('Access-Control-Allow-Origin: *');
|
||||||
|
header('Cross-Origin-Resource-Policy: cross-origin');
|
||||||
|
|
||||||
//add visitor to db
|
//add visitor to db
|
||||||
if(isSet($_COOKIE["counted$_REQUEST[id]"])){
|
if(isSet($_COOKIE["counted$_REQUEST[id]"])){
|
||||||
|
Reference in New Issue
Block a user