aboutsummaryrefslogtreecommitdiff
path: root/.htaccess
diff options
context:
space:
mode:
authorBradley Taunt <bt@btxx.org>2024-02-09 10:47:38 -0500
committerBradley Taunt <bt@btxx.org>2024-02-09 10:47:38 -0500
commit4af694a4064966eee6c13b3e1e03d6086a759e3f (patch)
tree5837004832741fabe8ac56df7f02fc601a0e9a8e /.htaccess
parent7ad33d86f98b93060e149a39a70febfa80d8620b (diff)
Setup SSI, template header and footers, link cleanup
Diffstat (limited to '.htaccess')
-rw-r--r--.htaccess9
1 files changed, 9 insertions, 0 deletions
diff --git a/.htaccess b/.htaccess
new file mode 100644
index 0000000..c52e730
--- /dev/null
+++ b/.htaccess
@@ -0,0 +1,9 @@
+Options +Includes
+XBitHack Full
+
+Header add Strict-Transport-Security "max-age=157680000"
+Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline'; img-src 'self'; font-src 'self';"
+Header always append X-Frame-Options SAMEORIGIN
+Header always set X-Content-Type-Options nosniff
+Header always set Referrer-Policy "unsafe-url"
+Header always set Permissions-Policy "geolocation=(self 'https://xhtml.club'), microphone=()"