changeset 372:94f34831132d

Opt out of FLOC via headers https://scotthelme.co.uk/what-the-floc/
author IBBoard <dev@ibboard.co.uk>
date Sat, 24 Apr 2021 11:12:33 +0100
parents 8f008309f941
children c68883dde00b
files modules/website/templates/https_core_conf.erb
diffstat 1 files changed, 2 insertions(+), 0 deletions(-) [+]
line wrap: on
line diff
--- a/modules/website/templates/https_core_conf.erb	Sat Apr 17 11:35:17 2021 +0100
+++ b/modules/website/templates/https_core_conf.erb	Sat Apr 24 11:12:33 2021 +0100
@@ -8,6 +8,8 @@
 Header always set X-Xss-Protection "1; mode=block"
 Header always set X-Content-Type-Options "nosniff"
 Header always set X-Frame-Options "SAMEORIGIN"
+Header always set Feature-Policy "interest-cohort 'none'; accelerometer 'none'; autoplay 'none'; battery 'none'; camera 'none'; geolocation 'none'; gyroscope 'none'; magnetometer 'none'; microphone 'none'; payment 'none'; usb 'none';"
+Header always set Permissions-Policy "interest-cohort=(); accelerometer=(); autoplay=(); battery=(); camera=(); geolocation=(); gyroscope=(); magnetometer=(); microphone=(); payment=(); usb=();"
 
 <If "%{HTTP_HOST} != '<%= @primary_name %>'">
 	Redirect permanent "/" "https://<%= @primary_name %>/"