Skip to content

Commit 2927aa1

Browse files
Added globally Referrer-Policy and Permissions-Policy headers
1 parent 3428790 commit 2927aa1

File tree

1 file changed

+6
-0
lines changed

1 file changed

+6
-0
lines changed

src/server/index.js

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -131,6 +131,12 @@ async function onExpressJsSetup(server) {
131131
return next();
132132
};
133133

134+
server.use(function(req, res, next) {
135+
res.header('Referrer-Policy', 'strict-origin-when-cross-origin');
136+
res.header('Permissions-Policy', 'geolocation=(), microphone=(), camera=()');
137+
next();
138+
});
139+
134140
/* Log Entries service proxy. */
135141
server.use('/community-app-assets/api/logger', checkAuthorizationHeader, (req, res) => {
136142
logger.log(`${req.clientIp} > `, ...req.body.data);

0 commit comments

Comments
 (0)