12ae192b37fc4a247d5db2bd9a8b36e20296dac0
Some checks failed
Code Analysis (JS/Vue) / analyze (push) Failing after 47s
This commit removes the X-Frame-Options header in favor of using Content Security Policy (CSP) with frame-ancestors for better flexibility and modern security practices. It also adds a fallback for frame-ancestors in case CSP is not enabled. Additionally, the JavaScript middleware is updated to reflect these changes, ensuring consistent security header management across the application.
Description
No description provided
Languages
Vue
55.7%
JavaScript
38.2%
TypeScript
3.2%
Shell
2.6%
HTML
0.2%