]> git.openstreetmap.org Git - rails.git/history - config/initializers/secure_headers.rb
Enable rails 7.1 defaults for features we don't use
[rails.git] / config / initializers / secure_headers.rb
2023-10-26 Andy AllanMerge pull request #4170 from osmcz/cuzk
2023-10-03 Tom HughesMerge remote-tracking branch 'upstream/pull/4226'
2023-09-27 Andy AllanMerge pull request #3690 from AntonKhorev/search-form...
2023-09-27 Andy AllanMerge pull request #4201 from AntonKhorev/issues-limit...
2023-09-27 Andy AllanMerge pull request #4249 from AntonKhorev/no-traces...
2023-09-27 Andy AllanMerge pull request #4184 from AntonKhorev/print
2023-09-22 Tom HughesMerge remote-tracking branch 'upstream/pull/4255'
2023-09-20 Paul NormanAdd Tracestrack Topo as featured layer
2023-08-30 Andy AllanMerge pull request #4193 from AntonKhorev/lookup-friend
2023-08-30 Andy AllanMerge pull request #4197 from AntonKhorev/user-resources
2023-08-27 Tom HughesMerge remote-tracking branch 'upstream/pull/4198'
2023-08-22 Tom HughesMake the TOTP cookie httponly
2022-12-03 Tom HughesMerge remote-tracking branch 'upstream/pull/3126'
2022-09-12 Anton KhorevMerge tooltip fixes/tests
2022-09-10 Adam HoyleMerge branch 'master' into feature/add-communities...
2022-08-03 Andy AllanMerge pull request #3552 from rugk/patch-1
2022-08-03 Andy AllanMerge pull request #3634 from AntonKhorev/map-key-tooltip
2022-08-03 Andy AllanMerge pull request #3631 from AntonKhorev/bootstrap...
2022-08-01 Tom HughesRename piwik to matomo and merge configuration into...
2022-04-25 Jesse WeinsteinMerge branch 'master' into HEAD
2022-02-16 Tom HughesMerge remote-tracking branch 'upstream/pull/3398'
2022-02-16 Andy AllanMerge pull request #3440 from mmd-osm/relationmemberlimit
2022-02-13 Tom HughesAllow trace image URL to be configured in the CSP policy
2021-07-18 Tom HughesMerge remote-tracking branch 'upstream/pull/3251'
2021-06-24 Tom HughesMerge remote-tracking branch 'upstream/pull/3177'
2021-06-23 Tom HughesMerge remote-tracking branch 'upstream/pull/3232'
2021-06-23 Tom HughesDon't mark banner cookies as HttpOnly
2021-06-09 Andy AllanMerge pull request #3208 from osm-hr/update-rcn-color
2021-06-04 Tom HughesSet a referrer policy
2021-04-29 Tom HughesMerge remote-tracking branch 'upstream/pull/3029'
2021-04-28 Andy AllanMerge pull request #3104 from fredrik-lindseth/patch-1
2021-04-08 Andy AllanMerge pull request #1558 from plarus/master
2021-02-24 Andy AllanMerge branch 'pull/3091'
2021-02-19 Tom HughesTighten up cookie security
2020-08-05 Tom HughesMerge remote-tracking branch 'upstream/pull/2667'
2020-07-16 Tom HughesMerge remote-tracking branch 'upstream/pull/2695'
2020-07-08 Tom HughesMerge remote-tracking branch 'upstream/pull/2698'
2020-07-08 Tom HughesMerge remote-tracking branch 'upstream/pull/2696'
2020-07-08 Tom HughesAllow image loading from tileserver.memomaps.de
2020-04-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2431'
2020-04-15 Andy AllanMerge pull request #2547 from bezdna/mobile-layout
2020-04-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2579'
2020-04-13 Tom HughesAdd tile.openstreetmap.org to security policy
2019-08-31 Stefan BaeblerMerge branch 'master' into tag-colour-preview-rebase
2019-08-28 Tom HughesMerge remote-tracking branch 'upstream/pull/1926'
2019-08-28 Andy AllanMerge pull request #2266 from systemed/patch-2
2019-07-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2296'
2019-07-09 Tom HughesAllow configuration of storage server URL for security...
2019-03-26 Tom HughesMerge remote-tracking branch 'upstream/pull/2175'
2019-03-19 Tom HughesMerge remote-tracking branch 'upstream/pull/2182'
2019-03-16 Tom HughesMerge remote-tracking branch 'upstream/pull/2177'
2019-03-13 Andy AllanMove all settings to settings.yml
2019-03-06 Tom HughesMerge remote-tracking branch 'upstream/pull/2167'
2019-02-28 Tom HughesMerge remote-tracking branch 'upstream/pull/2161'
2019-02-28 Tom HughesMerge remote-tracking branch 'upstream/pull/2160'
2019-02-24 Tom HughesAllow loading of our manifest
2019-01-16 Andy AllanMerge pull request #1151 from polarbearing/patch-1
2018-06-10 Tom HughesMerge branch 'master' into next
2018-05-24 Andy AllanMerge pull request #1871 from hikemaniac/browse-icon...
2018-05-22 Tom HughesAllow CSP to be put in enforcing mode
2018-05-18 hikemaniacRebase to current master
2018-05-17 Tom HughesConfigure manifest-src and worker-src in security policy
2018-05-17 Tom HughesPreserve schemes in security policy
2018-05-17 Tom HughesAdd piwik to allowed URIs in connect-src
2018-05-16 Tom HughesRemove unsafe-inline form default style policy
2018-05-15 Tom HughesMerge remote-tracking branch 'upstream/pull/1863'
2018-05-15 Tom HughesDefault frame-src to self
2018-02-04 Tom HughesMerge remote-tracking branch 'upstream/pull/1704'
2018-02-03 Tom HughesMerge remote-tracking branch 'upstream/pull/1693'
2018-01-21 Andy AllanMerge branch 'master' into moderation
2018-01-13 Tom HughesMerge remote-tracking branch 'upstream/pull/1707'
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2017-11-29 Andy AllanMerge branch 'master' into moderation
2017-11-23 Tom HughesAllow images to be loaded from piwik
2017-11-22 Andy AllanMerge branch 'pull/843' into titles
2017-11-22 Andy AllanMerge branch 'p' of https://github.com/jfirebaugh/opens...
2017-11-15 Andy AllanMerge branch 'wheres_this' of https://github.com/pnorma...
2017-11-01 Tom HughesRelax cookie security policy
2017-10-16 Tom HughesMerge remote-tracking branch 'upstream/pull/1580'
2017-09-08 Tom HughesUpdate secure_headers configuration for upstream changes
2017-07-12 Andy AllanMerge branch 'master' into moderation
2017-06-02 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1553'
2017-06-01 Tom HughesFix rubocop warnings
2017-03-05 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1437'
2017-03-03 Tom HughesUpdate HSTS to publish a max-age=0 to disable it
2017-03-02 Tom HughesDon't try and modify policy if we don't have one
2017-03-01 Tom HughesImprove the content security policy
2017-02-26 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1467'
2017-02-26 Tom HughesAdd support for Content-Security-Policy