-
-
Notifications
You must be signed in to change notification settings - Fork 1
/
_headers
26 lines (22 loc) · 2.1 KB
/
_headers
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
/
X-Content-Type-Options: nosniff
X-Frame-Options: DENY
Referrer-Policy: no-referrer
X-XSS-Protection: 1; mode=block
Link: </css/index.css>; rel=preload; as=style referrerpolicy=no-referrer;
Link: <https://unpkg.com/@shgysk8zer0/polyfills@0.2.3/all.min.js>; rel=preload; as=script; referrerpolicy=no-referrer; crossorigin=anonymous;
Link: <https://unpkg.com/@shgysk8zer0/kazoo@0.2.2/harden.js>; rel=preload; as=script; referrerpolicy=no-referrer; crossorigin=anonymous;
Link: </js/index.js>; rel=preload; as=script referrerpolicy=no-referrer;
Content-Security-Policy: default-src 'self'; img-src * blob: data:; script-src 'self' unpkg.com/ www.google-analytics.com www.googletagmanager.com 'nonce-3d07a622-9356-446d-8799-7ea4958d067f'; style-src 'self' cdn.kernvalley.us unpkg.com/ blob:; connect-src 'self' unpkg.com/@shgysk8zer0/ unpkg.com/@kernvalley/ apps.kernvalley.us/apps.json api.github.com/users/ api.openweathermap.org/data/2.5/ www.google-analytics.com/ www.googletagmanager.com/gtag/ baconipsum.com/api/; font-src cdn.kernvalley.us; media-src *; frame-src www.youtube-nocookie.com open.spotify.com/embed/; form-action 'self'; manifest-src 'self'; worker-src 'self'; reflected-xss block; upgrade-insecure-requests; block-all-mixed-content; disown-opener; trusted-types default empty#html empty#script sanitizer-raw#html dompurify share-to-buttons#html weather-current#html krv-events#html disqus#script-url pwa-install html-notification#script spotify-player youtube#embed github-user#html; require-trusted-types-for 'script';
/reset
Referrer-Policy: no-referrer
Clear-Site-Data: "cache", "cookies", "storage"
Content-Security-Policy: default-src 'self'; script-src 'self' cdn.kernvalley.us;
/service-worker.js
Referrer-Policy: no-referrer
Content-Security-Policy: default-src 'self'; connect-src *; script-src 'self' cdn.kernvalley.us/service-worker.js *.netlify.live/service-worker.js *.netlify.app/service-worker.js;
Link: <//cdn.kernvalley.us/service-worker.js>; rel=preload; as=script
Link: </sw-config.js>; rel=preload; as=script
/*
Referrer-Policy: no-referrer
X-Content-Type-Options: nosniff