From 8a70e728f2dd8b6b7a6a9c002f13606282440a80 Mon Sep 17 00:00:00 2001 From: Kenneth Kehl <@kkehl@flexion.us> Date: Mon, 3 Feb 2025 08:08:47 -0800 Subject: [PATCH] try to fix dynamic scan warnings --- app/__init__.py | 3 +++ 1 file changed, 3 insertions(+) diff --git a/app/__init__.py b/app/__init__.py index 2c123f71b..b9c768875 100644 --- a/app/__init__.py +++ b/app/__init__.py @@ -286,10 +286,13 @@ def init_app(app): @app.after_request def after_request(response): response.headers.add("X-Content-Type-Options", "nosniff") + + # Some dynamic scan findings response.headers.add("Cross-Origin-Opener-Policy", "same-origin") response.headers.add("Cross-Origin-Embedder-Policy", "require-corp") response.headers.add("Cross-Origin-Resource-Policy", "same-origin") response.headers.add("Cross-Origin-Opener-Policy", "same-origin") + response.headers.pop("Server", None) return response