]> git.openstreetmap.org Git - rails.git/history - config/initializers/secure_headers.rb
Tighten up cookie security
[rails.git] / config / initializers / secure_headers.rb
2021-02-19 Tom HughesTighten up cookie security
2020-08-05 Tom HughesMerge remote-tracking branch 'upstream/pull/2667'
2020-07-16 Tom HughesMerge remote-tracking branch 'upstream/pull/2695'
2020-07-08 Tom HughesMerge remote-tracking branch 'upstream/pull/2698'
2020-07-08 Tom HughesMerge remote-tracking branch 'upstream/pull/2696'
2020-07-08 Tom HughesAllow image loading from tileserver.memomaps.de
2020-04-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2431'
2020-04-15 Andy AllanMerge pull request #2547 from bezdna/mobile-layout
2020-04-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2579'
2020-04-13 Tom HughesAdd tile.openstreetmap.org to security policy
2019-08-31 Stefan BaeblerMerge branch 'master' into tag-colour-preview-rebase
2019-08-28 Tom HughesMerge remote-tracking branch 'upstream/pull/1926'
2019-08-28 Andy AllanMerge pull request #2266 from systemed/patch-2
2019-07-15 Tom HughesMerge remote-tracking branch 'upstream/pull/2296'
2019-07-09 Tom HughesAllow configuration of storage server URL for security...
2019-03-26 Tom HughesMerge remote-tracking branch 'upstream/pull/2175'
2019-03-19 Tom HughesMerge remote-tracking branch 'upstream/pull/2182'
2019-03-16 Tom HughesMerge remote-tracking branch 'upstream/pull/2177'
2019-03-13 Andy AllanMove all settings to settings.yml
2019-03-06 Tom HughesMerge remote-tracking branch 'upstream/pull/2167'
2019-02-28 Tom HughesMerge remote-tracking branch 'upstream/pull/2161'
2019-02-28 Tom HughesMerge remote-tracking branch 'upstream/pull/2160'
2019-02-24 Tom HughesAllow loading of our manifest
2019-01-16 Andy AllanMerge pull request #1151 from polarbearing/patch-1
2018-06-10 Tom HughesMerge branch 'master' into next
2018-05-24 Andy AllanMerge pull request #1871 from hikemaniac/browse-icon...
2018-05-22 Tom HughesAllow CSP to be put in enforcing mode
2018-05-18 hikemaniacRebase to current master
2018-05-17 Tom HughesConfigure manifest-src and worker-src in security policy
2018-05-17 Tom HughesPreserve schemes in security policy
2018-05-17 Tom HughesAdd piwik to allowed URIs in connect-src
2018-05-16 Tom HughesRemove unsafe-inline form default style policy
2018-05-15 Tom HughesMerge remote-tracking branch 'upstream/pull/1863'
2018-05-15 Tom HughesDefault frame-src to self
2018-02-04 Tom HughesMerge remote-tracking branch 'upstream/pull/1704'
2018-02-03 Tom HughesMerge remote-tracking branch 'upstream/pull/1693'
2018-01-21 Andy AllanMerge branch 'master' into moderation
2018-01-13 Tom HughesMerge remote-tracking branch 'upstream/pull/1707'
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2018-01-11 Tom HughesAllow apache to control the HSTS setting
2017-11-29 Andy AllanMerge branch 'master' into moderation
2017-11-23 Tom HughesAllow images to be loaded from piwik
2017-11-22 Andy AllanMerge branch 'pull/843' into titles
2017-11-22 Andy AllanMerge branch 'p' of https://github.com/jfirebaugh/opens...
2017-11-15 Andy AllanMerge branch 'wheres_this' of https://github.com/pnorma...
2017-11-01 Tom HughesRelax cookie security policy
2017-10-16 Tom HughesMerge remote-tracking branch 'upstream/pull/1580'
2017-09-08 Tom HughesUpdate secure_headers configuration for upstream changes
2017-07-12 Andy AllanMerge branch 'master' into moderation
2017-06-02 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1553'
2017-06-01 Tom HughesFix rubocop warnings
2017-03-05 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1437'
2017-03-03 Tom HughesUpdate HSTS to publish a max-age=0 to disable it
2017-03-02 Tom HughesDon't try and modify policy if we don't have one
2017-03-01 Tom HughesImprove the content security policy
2017-02-26 Tom HughesMerge remote-tracking branch 'openstreetmap/pull/1467'
2017-02-26 Tom HughesAdd support for Content-Security-Policy