Merge pull request #60 from cypherbits/header_security

Add more security headers
This commit is contained in:
Daniel Winzen
2020-05-02 18:28:44 +02:00
committed by GitHub

View File

@ -3261,6 +3261,9 @@ function send_headers(){
header('Expires: 0'); header('Expires: 0');
header('Referrer-Policy: no-referrer'); header('Referrer-Policy: no-referrer');
header('Content-Security-Policy: referrer never'); header('Content-Security-Policy: referrer never');
header('X-Content-Type-Options: nosniff');
header('X-Frame-Options: sameorigin');
header('X-XSS-Protection: 1; mode=block');
if($_SERVER['REQUEST_METHOD']==='HEAD'){ if($_SERVER['REQUEST_METHOD']==='HEAD'){
exit; // headers sent, no further processing needed exit; // headers sent, no further processing needed
} }