Hi All,

FYI: somebody mailed us on secur...@qgis.org that we did not set X-Frame-Options HTTP 
response header on our website, which "... could be at risk of a clickjacking attack 
...".

As this seemed an easy fix, we now set

 X-Frame-Options DENY

Please let me know if this is (or gives you) a problem somewhere.

Regards,

Richard Duivenvoorde

_______________________________________________
QGIS-Developer mailing list
QGIS-Developer@lists.osgeo.org
List info: https://lists.osgeo.org/mailman/listinfo/qgis-developer
Unsubscribe: https://lists.osgeo.org/mailman/listinfo/qgis-developer

Reply via email to