We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 439e7e0 commit 66ff72aCopy full SHA for 66ff72a
middleware/index.js
@@ -23,6 +23,7 @@ module.exports = function (app) {
23
app.use(require('./loaderio-verification'))
24
app.use(require('./cors'))
25
app.use(require('./csp'))
26
+ app.use(require('./referrer-policy'))
27
app.use(require('helmet')())
28
app.use(require('./robots'))
29
app.use(require('./cookie-parser'))
middleware/referrer-policy.js
@@ -0,0 +1,8 @@
1
+// This module defines the Referrer-Policy HEADER behaviour
2
+// https://developer.mozilla.org/en-US/docs/Web/Security/Referer_header:_privacy_and_security_concerns
3
+
4
+const { referrerPolicy } = require('helmet')
5
6
+module.exports = referrerPolicy({
7
+ policy: "strict-origin-when-cross-origin",
8
+})
0 commit comments