There was an error while loading. Please reload this page.
1 parent ebf742e commit 263c893Copy full SHA for 263c893
src/middleware.ts
@@ -235,6 +235,10 @@ export async function middleware(request: NextRequest) {
235
236
// Add Content Security Policy header
237
response.headers.set('content-security-policy', csp);
238
+ // Basic security headers
239
+ response.headers.set('strict-transport-security', 'max-age=31536000');
240
+ response.headers.set('referrer-policy', 'no-referrer-when-downgrade');
241
+ response.headers.set('x-content-type-options', 'nosniff');
242
243
const isPrefetch = request.headers.has('x-middleware-prefetch');
244
0 commit comments