- /*
- X-Frame-Options: DENY
- X-Content-Type-Options: nosniff
- Referrer-Policy: no-referrer
- Permissions-Policy: document-domain=()
- Content-Security-Policy: script-src 'self'; frame-ancestors 'none';
- /assets/*
- cache-control: max-age=31536000
- cache-control: immutable
|