Skip to content

Commit

Permalink
fix (security): Implements #26 DAST security mitigations
Browse files Browse the repository at this point in the history
  • Loading branch information
Hernan Rojek Moriceau committed May 15, 2023
1 parent d25f6e0 commit 54d9c5f
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 0 deletions.
3 changes: 3 additions & 0 deletions nginx.conf
Original file line number Diff line number Diff line change
@@ -1,5 +1,8 @@
server {

server_tokens off;
add_header 'Referrer-Policy' 'origin';

location / {
root /usr/share/nginx/html/;
include /etc/nginx/mime.types;
Expand Down
4 changes: 4 additions & 0 deletions public/index.html
Original file line number Diff line number Diff line change
Expand Up @@ -18,6 +18,7 @@
<head>
<meta charset="utf-8" />
<link rel="icon" href="%PUBLIC_URL%/favicon.ico" />
<meta name="referrer" content="origin" />
<meta name="viewport" content="width=device-width, initial-scale=1" />
<meta
name="description"
Expand All @@ -44,6 +45,9 @@
<script
type="text/javascript"
src="https://ajax.googleapis.com/ajax/libs/jquery/1.8.3/jquery.min.js"
integrity="sha384-lifoBlbdwizTl3Yoe612uhI3AcOam/QtWkozF7SuiACaf5UJl5reOYu4MigVxrCH"
crossOrigin="anonymous"
data-integrity-bad="sha384-K//nZc8vZ68YQ8QUGSmaDbIyGMsLsGLvnG51fC4z4ysDZJG8nXE05BkPxg+b/pVI"
></script>
<script type="text/javascript" src="%PUBLIC_URL%/env.js"></script>
<div id="app" class="container"></div>
Expand Down

0 comments on commit 54d9c5f

Please sign in to comment.