From 6bbf3bce136cc64e4ffe9869107cd478cec65f19 Mon Sep 17 00:00:00 2001 From: "J.-S. Caux" <J.S.Caux@uva.nl> Date: Sat, 4 May 2019 10:45:46 +0200 Subject: [PATCH] Enable secure content type nosniff --- SciPost_v1/settings/base.py | 1 + 1 file changed, 1 insertion(+) diff --git a/SciPost_v1/settings/base.py b/SciPost_v1/settings/base.py index f8af2627d..85bb2f767 100644 --- a/SciPost_v1/settings/base.py +++ b/SciPost_v1/settings/base.py @@ -191,6 +191,7 @@ SECURE_BROWSER_XSS_FILTER = True SECURE_HSTS_SECONDS = 60 SECURE_HSTS_INCLUDE_SUBDOMAINS = True SECURE_HSTS_PRELOAD = True +SECURE_CONTENT_TYPE_NOSNIFF = True ROOT_URLCONF = 'SciPost_v1.urls' -- GitLab