referer: only send for same-origin requests

remotes/1693176582716663532/tmp_refs/heads/watchparty
justcool393 2022-10-29 16:33:17 -05:00
parent 940c475277
commit 3ac5fad2d8
1 changed files with 1 additions and 0 deletions

View File

@ -112,6 +112,7 @@ def before_request():
def after_request(response):
response.headers.add("Strict-Transport-Security", "max-age=31536000")
response.headers.add("X-Frame-Options", "deny")
response.headers.add("Referrer-Policy", "same-origin")
if response.status_code < 400:
g.db.commit()
g.db.close()