Commit Graph

7 Commits (ff629ad158a6e2b1ae0202733e31f1ae14723d96)

Author SHA1 Message Date
Roeland Jago Douma ad676c0102
Set default frame-ancestors to 'self' 7 years ago
Roeland Jago Douma 64244e1a4f
CSP: Allow fonts to be provided in data 7 years ago
Roeland Jago Douma 5b61ef9213
Disallow unsafe-eval by default 7 years ago
Thomas Citharel ecf347bd1a Add CSP frame-ancestors support 8 years ago
Morris Jobke f9bc53146d
Fix unit tests 9 years ago
Lukas Reschke adfd1e63f6
Add base-uri to CSP policy 9 years ago
Joas Schilling 94ad54ec9b Move tests/ to PSR-4 (#24731) 10 years ago
Joas Schilling 9eade36ae5
Fix namespaces in AppFramework tests 10 years ago
Lukas Reschke 809ff5ac95 Add public API to give developers the possibility to adjust the global CSP defaults 10 years ago
Lukas Reschke e735a9915c Add blob: scheme to default CSP policy 10 years ago
sualko 930841b67a add unit test for data: as allowed image domain 11 years ago
Lukas Reschke a62190a72d Add support for disallowing domains to the ContentSecurityPolicy 11 years ago
Lukas Reschke b29940d956 Add support for 'child-src' directive 11 years ago
Lukas Reschke a9d1a01440 Rename to allowEval 11 years ago
Lukas Reschke b20174bdad Allow AppFramework applications to specify a custom CSP header 11 years ago