aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorDuncan <duncan@vtllf.org>2015-07-21 15:19:56 +1200
committerDuncan <duncan@vtllf.org>2015-07-21 15:19:56 +1200
commita6596f223175547952816351905c34ccf3e0b84f (patch)
tree1af2c995ec6f411edbfe3dd2937741dbd5d7372e
parent548b95f7b593d80a241c9a1027eda6b4549ca995 (diff)
downloadgitea-a6596f223175547952816351905c34ccf3e0b84f.tar.gz
gitea-a6596f223175547952816351905c34ccf3e0b84f.zip
Prevent browsers from leaking referrer headers
-rw-r--r--templates/base/head.tmpl1
-rw-r--r--templates/base/head_old.tmpl1
-rw-r--r--templates/ng/base/head.tmpl1
3 files changed, 3 insertions, 0 deletions
diff --git a/templates/base/head.tmpl b/templates/base/head.tmpl
index d057754410..8551801d01 100644
--- a/templates/base/head.tmpl
+++ b/templates/base/head.tmpl
@@ -6,6 +6,7 @@
<meta name="author" content="Gogs - Go Git Service" />
<meta name="description" content="Gogs(Go Git Service) a painless self-hosted Git Service written in Go" />
<meta name="keywords" content="go, git, self-hosted, gogs">
+ <meta name="referrer" content="no-referrer" />
<meta name="_csrf" content="{{.CsrfToken}}" />
{{if .GoGetImport}}
<meta name="go-import" content="{{.GoGetImport}} git {{.CloneLink.HTTPS}}">
diff --git a/templates/base/head_old.tmpl b/templates/base/head_old.tmpl
index e04fe2e1a7..fc2a86788d 100644
--- a/templates/base/head_old.tmpl
+++ b/templates/base/head_old.tmpl
@@ -8,6 +8,7 @@
<meta name="author" content="Gogs - Go Git Service" />
<meta name="description" content="Gogs(Go Git Service) is a GitHub-like clone in the Go Programming Language" />
<meta name="keywords" content="go, git">
+ <meta name="referrer" content="no-referrer" />
<meta name="_csrf" content="{{.CsrfToken}}" />
{{if .GoGetImport}}<meta name="go-import" content="{{.GoGetImport}} git {{.CloneLink.HTTPS}}">{{end}}
diff --git a/templates/ng/base/head.tmpl b/templates/ng/base/head.tmpl
index f2a235bd43..6d5001a9cb 100644
--- a/templates/ng/base/head.tmpl
+++ b/templates/ng/base/head.tmpl
@@ -6,6 +6,7 @@
<meta name="author" content="Gogs - Go Git Service" />
<meta name="description" content="Gogs(Go Git Service) a painless self-hosted Git Service written in Go" />
<meta name="keywords" content="go, git, self-hosted, gogs">
+ <meta name="referrer" content="no-referrer" />
<meta name="_csrf" content="{{.CsrfToken}}" />
{{if .GoGetImport}}<meta name="go-import" content="{{.GoGetImport}} git {{.CloneLink.HTTPS}}">{{end}}