1
0
mirror of https://github.com/Unleash/unleash.git synced 2024-10-18 20:09:08 +02:00
unleash.unleash/lib/middleware/helmet.js
2020-09-18 11:52:54 +02:00

35 lines
960 B
JavaScript

const helmet = require('helmet');
module.exports = function(config) {
if (config.enableHelmet) {
return helmet({
hsts: {
maxAge: 63072000,
includeSubDomains: true,
preload: true,
},
contentSecurityPolicy: {
directives: {
defaultSrc: [
"'self'",
'fonts.googleapis.com',
'fonts.gstatic.com',
'data:',
'gravatar.com',
],
styleSrc: [
"'self'",
"'unsafe-inline'",
'fonts.googleapis.com',
'fonts.gstatic.com',
'data:',
],
},
},
});
}
return (req, res, next) => {
next();
};
};