feat: adding security headers to improve observatory score

This commit is contained in:
Simon Hyll
2024-05-21 04:41:25 +02:00
parent 455413f4a2
commit aa6461df2e
2 changed files with 6 additions and 1 deletions

View File

@@ -257,7 +257,7 @@ export default defineConfig({
clientsClaim: true,
inlineWorkboxRuntime: true,
skipWaiting: true,
globIgnores: ["**_redirects**"],
globIgnores: ["**_redirects**", "**_headers**"],
globPatterns: ["**/*.js", "**/*.css"],
runtimeCaching: [{
urlPattern: new RegExp('.*'),

5
public/_headers Normal file
View File

@@ -0,0 +1,5 @@
/*
X-Frame-Options: DENY
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
Content-Security-Policy: default-src 'self';