Skip to content

Commit eb151ca

Browse files
committed
Add all other headers
1 parent 69f9a3d commit eb151ca

File tree

1 file changed

+6
-1
lines changed

1 file changed

+6
-1
lines changed

lib/secure_headers/railtie.rb

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,12 @@
33
module SecureHeaders
44
class Railtie < Rails::Engine
55
isolate_namespace ::SecureHeaders if defined? isolate_namespace # rails 3.0
6-
conflicting_headers = ['X-Frame-Options', 'X-XSS-Protection', 'X-Content-Type-Options']
6+
conflicting_headers = ['X-Frame-Options', 'X-XSS-Protection', 'X-Content-Type-Options',
7+
'X-Permitted-Cross-Domain-Policies', 'X-Download-Options',
8+
'X-Content-Type-Options', 'Strict-Transport-Security',
9+
'Content-Security-Policy', 'Content-Security-Policy-Report-Only',
10+
'X-Permitted-Cross-Domain-Policies']
11+
712
initializer "secure_headers.action_controller" do
813
ActiveSupport.on_load(:action_controller) do
914
include ::SecureHeaders

0 commit comments

Comments
 (0)