From f704557d54e6a5b063528ff8e4863011c475dee3 Mon Sep 17 00:00:00 2001 From: Aevann1 Date: Wed, 11 Aug 2021 23:08:02 +0200 Subject: [PATCH] fd --- files/__main__.py | 5 ----- 1 file changed, 5 deletions(-) diff --git a/files/__main__.py b/files/__main__.py index 9628f0d13..d2991b28c 100644 --- a/files/__main__.py +++ b/files/__main__.py @@ -254,13 +254,8 @@ def after_request(response): print(e) abort(500) - response.headers.add('Access-Control-Allow-Headers', "Origin, X-Requested-With, Content-Type, Accept, x-auth") response.headers.remove("Cache-Control") response.headers.add("Cache-Control", "public, maxage=600") - response.headers.add("Strict-Transport-Security", "max-age=31536000") - response.headers.add("Referrer-Policy", "same-origin") - response.headers.add("Feature-Policy", "geolocation 'none'; midi 'none'; sync-xhr 'none'; microphone 'none'; camera 'none'; magnetometer 'none'; gyroscope 'none'; fullscreen 'none'; payment 'none';") - if not request.path.startswith("/embed/"): response.headers.add("X-Frame-Options", "deny") return response