mirror of
https://github.com/GSA/notifications-admin.git
synced 2026-02-05 02:42:26 -05:00
Merge pull request #46 from alphagov/add-useful-headers
Add some useful owasp suggested headers
This commit is contained in:
8
tests/app/main/views/test_headers.py
Normal file
8
tests/app/main/views/test_headers.py
Normal file
@@ -0,0 +1,8 @@
|
||||
|
||||
def test_owasp_useful_headers_set(notifications_admin):
|
||||
with notifications_admin.test_request_context():
|
||||
response = notifications_admin.test_client().get('/')
|
||||
assert response.status_code == 200
|
||||
assert response.headers['X-Frame-Options'] == 'deny'
|
||||
assert response.headers['X-Content-Type-Options'] == 'nosniff'
|
||||
assert response.headers['X-XSS-Protection'] == '1; mode=block'
|
||||
Reference in New Issue
Block a user