diff --git a/base/etc/nginx/conf.d/header/feature.conf b/base/etc/nginx/conf.d/header/feature.conf index 39ecf7d..7145c7e 100644 --- a/base/etc/nginx/conf.d/header/feature.conf +++ b/base/etc/nginx/conf.d/header/feature.conf @@ -1,3 +1 @@ -# Feature Policy will allow a site to enable or disable certain browser features and APIs in the interest of better security and privacy. -# https://scotthelme.co.uk/a-new-security-header-feature-policy -add_header Feature-Policy "geolocation 'none'; midi 'none'; notifications 'none'; push 'none'; microphone 'none'; camera 'none'; magnetometer 'none'; gyroscope 'none'; speaker 'self'; vibrate 'none'; fullscreen 'self'; payment 'none';"; +add_header Permissions-Policy "accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), midi=(), payment=(), usb=()";