diff --git a/webhook_logger/settings.py b/webhook_logger/settings.py index f036d68..81b713d 100644 --- a/webhook_logger/settings.py +++ b/webhook_logger/settings.py @@ -98,6 +98,12 @@ if not DEBUG: STATICFILES_STORAGE = "whitenoise.storage.CompressedManifestStaticFilesStorage" +# Security Headers + +SECURE_BROWSER_XSS_FILTER = True +SECURE_CONTENT_TYPE_NOSNIFF = True +X_FRAME_OPTIONS = "DENY" + # Django Channels ASGI_APPLICATION = "webhook_logger.routing.application"