Skip to content

Conversation

pgporada
Copy link
Member

"Setting this directive to 'none' is similar to X-Frame-Options: deny (which is also supported in older browsers)."

https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy/frame-ancestors

"Setting this directive to 'none' is similar to X-Frame-Options: deny (which is also supported in older browsers)."
https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy/frame-ancestors
Copy link
Collaborator

@tdelmas tdelmas left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Could you add the same change in config/_default/server.toml?

@bdaehlie bdaehlie requested a review from tdelmas September 28, 2023 14:32
@bdaehlie bdaehlie requested a review from scottmakestech July 31, 2025 13:16
@bdaehlie
Copy link
Contributor

@scottmakestech Can you review this? Is it still a desirable and non-breaking thing to do?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants