mirror of
https://github.com/juanfont/headscale.git
synced 2026-05-29 21:46:38 +09:00
0567cb6da3
X-Frame-Options: DENY and frame-ancestors 'none' stop clickjacking of OIDC, register-confirm, and debug HTML pages. nosniff and no-referrer are cheap defence-in-depth for the same surfaces. Updates #3157
718 B
718 B