1
0
angie-krdsh/snip.d/http-security-headers
2024-03-22 10:24:54 +03:00

4 lines
201 B
Plaintext

include snip.d/http-base-security-headers;
add_header Content-Security-Policy "default-src 'self' http: https: ws: wss: data: blob: 'unsafe-inline' 'unsafe-eval' ; frame-ancestors 'self';" always;