aboutsummaryrefslogtreecommitdiff
path: root/.htaccess
diff options
context:
space:
mode:
Diffstat (limited to '.htaccess')
-rw-r--r--.htaccess9
1 files changed, 9 insertions, 0 deletions
diff --git a/.htaccess b/.htaccess
new file mode 100644
index 0000000..c52e730
--- /dev/null
+++ b/.htaccess
@@ -0,0 +1,9 @@
+Options +Includes
+XBitHack Full
+
+Header add Strict-Transport-Security "max-age=157680000"
+Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval'; style-src 'self' 'unsafe-inline'; img-src 'self'; font-src 'self';"
+Header always append X-Frame-Options SAMEORIGIN
+Header always set X-Content-Type-Options nosniff
+Header always set Referrer-Policy "unsafe-url"
+Header always set Permissions-Policy "geolocation=(self 'https://xhtml.club'), microphone=()"