Skip to content

Add security headers#147

Merged
laymonage merged 7 commits into
mainfrom
security-headers
Jul 25, 2021
Merged

Add security headers#147
laymonage merged 7 commits into
mainfrom
security-headers

Conversation

@laymonage

@laymonage laymonage commented Jul 25, 2021

Copy link
Copy Markdown
Member

Part of #40.

Slightly related to utterance/utterances#527, we set Content-Security-Policy with frame-ancestors that's set to the current origin if it's allowed according to giscus.json settings. As a result, we no longer show the message implemented in #125 (the browser will now simply refuse to load the iframe).

@vercel

vercel Bot commented Jul 25, 2021

Copy link
Copy Markdown

This pull request is being automatically deployed with Vercel (learn more).
To see the status of your deployment, click below or on the icon next to each commit.

🔍 Inspect: https://vercel.com/laymonage/giscus/71KCJx164MUfi4HR2qrwwiyyzu5M
✅ Preview: https://giscus-git-security-headers-laymonage.vercel.app

@laymonage
laymonage merged commit c96014b into main Jul 25, 2021
@laymonage
laymonage deleted the security-headers branch July 25, 2021 06:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant