SecurityHeadersOptions
Defined in: src/plugins/middleware/security-headers.ts:4
Properties
Section titled “Properties”contentSecurityPolicy?
Section titled “contentSecurityPolicy?”
optionalcontentSecurityPolicy:boolean|Record<string,any>
Defined in: src/plugins/middleware/security-headers.ts:8
Content Security Policy
crossOriginEmbedderPolicy?
Section titled “crossOriginEmbedderPolicy?”
optionalcrossOriginEmbedderPolicy:boolean
Defined in: src/plugins/middleware/security-headers.ts:12
Cross-Origin Embedder Policy
crossOriginOpenerPolicy?
Section titled “crossOriginOpenerPolicy?”
optionalcrossOriginOpenerPolicy:boolean
Defined in: src/plugins/middleware/security-headers.ts:16
Cross-Origin Opener Policy
crossOriginResourcePolicy?
Section titled “crossOriginResourcePolicy?”
optionalcrossOriginResourcePolicy:boolean
Defined in: src/plugins/middleware/security-headers.ts:20
Cross-Origin Resource Policy
dnsPrefetchControl?
Section titled “dnsPrefetchControl?”
optionaldnsPrefetchControl:boolean| {allow:boolean; }
Defined in: src/plugins/middleware/security-headers.ts:24
DNS Prefetch Control
expectCt?
Section titled “expectCt?”
optionalexpectCt:boolean| {enforce?:boolean;maxAge?:number;reportUri?:string; }
Defined in: src/plugins/middleware/security-headers.ts:28
Expect CT
frameguard?
Section titled “frameguard?”
optionalframeguard:boolean| {action:"deny"|"sameorigin"|"allow-from";domain?:string; }
Defined in: src/plugins/middleware/security-headers.ts:32
Frameguard
hidePoweredBy?
Section titled “hidePoweredBy?”
optionalhidePoweredBy:boolean
Defined in: src/plugins/middleware/security-headers.ts:36
Hide Powered By
optionalhsts:boolean| {includeSubDomains?:boolean;maxAge?:number;preload?:boolean; }
Defined in: src/plugins/middleware/security-headers.ts:40
HTTP Strict Transport Security
ieNoOpen?
Section titled “ieNoOpen?”
optionalieNoOpen:boolean
Defined in: src/plugins/middleware/security-headers.ts:44
IE No Open
noSniff?
Section titled “noSniff?”
optionalnoSniff:boolean
Defined in: src/plugins/middleware/security-headers.ts:48
No Sniff
originAgentCluster?
Section titled “originAgentCluster?”
optionaloriginAgentCluster:boolean
Defined in: src/plugins/middleware/security-headers.ts:52
Origin Agent Cluster
permittedCrossDomainPolicies?
Section titled “permittedCrossDomainPolicies?”
optionalpermittedCrossDomainPolicies:boolean| {permittedPolicies:"none"|"all"|"master-only"|"by-content-type"; }
Defined in: src/plugins/middleware/security-headers.ts:56
Permitted Cross Domain Policies
referrerPolicy?
Section titled “referrerPolicy?”
optionalreferrerPolicy:boolean| {policy:string|string[]; }
Defined in: src/plugins/middleware/security-headers.ts:60
Referrer Policy
xssFilter?
Section titled “xssFilter?”
optionalxssFilter:boolean
Defined in: src/plugins/middleware/security-headers.ts:64
X-XSS-Protection