add security policy

This commit is contained in:
clemkeirua 2019-05-03 15:25:51 +02:00
parent 58c71ddee6
commit 8582b08a98
3 changed files with 26 additions and 0 deletions

View file

@ -59,6 +59,9 @@ Rails.application.configure do
port: 3000
}
# Use Content-Security-Policy-Report-Only instead of Content-Security-Policy
config.content_security_policy_report_only = true
# Raises error for missing translations
# config.action_view.raise_on_missing_translations = true

View file

@ -109,5 +109,7 @@ Rails.application.configure do
host: ENV['APP_HOST']
}
config.content_security_policy_report_only = true
config.lograge.enabled = ENV['LOGRAGE_ENABLED'] == 'enabled'
end