about summary refs log tree commit diff
path: root/config/initializers/secureheaders.rb
blob: 6c8ac7fbe5e8e36fca25a24ecb91e2df225e6ce1 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
SecureHeaders::Configuration.default do |config|
  config.cookies = {
    secure: true,
    httponly: true,
    samesite: {
      lax: true
    }
  }
  config.csp = SecureHeaders::OPT_OUT
end