]> git.openstreetmap.org Git - rails.git/history - config/initializers/secure_headers.rb
Preserve schemes in security policy
[rails.git] / config / initializers / secure_headers.rb
2018-05-17 Tom HughesPreserve schemes in security policy
2018-05-17 Tom HughesAdd piwik to allowed URIs in connect-src
2018-05-16 Tom HughesRemove unsafe-inline form default style policy
2018-05-15 Tom HughesMerge remote-tracking branch 'upstream/pull/1863'
2018-05-15 Tom HughesDefault frame-src to self
2018-02-04 Tom HughesMerge remote-tracking branch 'upstream/pull/1704'
2018-02-03 Tom HughesMerge remote-tracking branch 'upstream/pull/1693'
2018-01-13 Tom HughesMerge remote-tracking branch 'upstream/pull/1707'
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2017-11-23 Tom HughesAllow images to be loaded from piwik
2017-11-22 Andy AllanMerge branch 'pull/843' into titles
2017-11-22 Andy AllanMerge branch 'p' of https://github.com/jfirebaugh/opens...
2017-11-15 Andy AllanMerge branch 'wheres_this' of https://github.com/pnorma...
2017-11-01 Tom HughesRelax cookie security policy
2017-10-16 Tom HughesMerge remote-tracking branch 'upstream/pull/1580'
2017-09-08 Tom HughesUpdate secure_headers configuration for upstream changes
2017-06-02 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1553'
2017-06-01 Tom HughesFix rubocop warnings
2017-03-05 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1437'
2017-03-03 Tom HughesUpdate HSTS to publish a max-age=0 to disable it
2017-03-02 Tom HughesDon't try and modify policy if we don't have one
2017-03-01 Tom HughesImprove the content security policy
2017-02-26 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1467'
2017-02-26 Tom HughesAdd support for Content-Security-Policy