summaryrefslogtreecommitdiffstats
path: root/core/templates
diff options
context:
space:
mode:
authorRalph Slooten <axllent@gmail.com>2018-02-07 20:58:15 +1300
committerRalph Slooten <axllent@gmail.com>2018-02-08 08:31:24 +1300
commitbe42df8e48ac1ebff09afedfed2d3af8afc681aa (patch)
tree7d8c1238fe9c33e903f644e35cb0015ae570c107 /core/templates
parent2a3272331f8b0e345df762ebeb54b2f58183225f (diff)
downloadnextcloud-server-be42df8e48ac1ebff09afedfed2d3af8afc681aa.tar.gz
nextcloud-server-be42df8e48ac1ebff09afedfed2d3af8afc681aa.zip
Referrer fix (no-referrer)
Blocking referrer information should be done with "no-referrer" and not "never". See https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Referrer-Policy Signed-off-by: Ralph Slooten <axllent@gmail.com>
Diffstat (limited to 'core/templates')
-rw-r--r--core/templates/layout.base.php2
-rw-r--r--core/templates/layout.guest.php2
-rw-r--r--core/templates/layout.user.php2
3 files changed, 3 insertions, 3 deletions
diff --git a/core/templates/layout.base.php b/core/templates/layout.base.php
index a5096b87b93..043ac32fbc6 100644
--- a/core/templates/layout.base.php
+++ b/core/templates/layout.base.php
@@ -6,7 +6,7 @@
<?php p($theme->getTitle()); ?>
</title>
<meta http-equiv="X-UA-Compatible" content="IE=edge">
- <meta name="referrer" content="never">
+ <meta name="referrer" content="no-referrer">
<meta name="viewport" content="width=device-width, minimum-scale=1.0, maximum-scale=1.0">
<meta name="theme-color" content="<?php p($theme->getColorPrimary()); ?>">
<link rel="icon" href="<?php print_unescaped(image_path('', 'favicon.ico')); /* IE11+ supports png */ ?>">
diff --git a/core/templates/layout.guest.php b/core/templates/layout.guest.php
index e208af3c507..21bd72fc88b 100644
--- a/core/templates/layout.guest.php
+++ b/core/templates/layout.guest.php
@@ -6,7 +6,7 @@
<?php p($theme->getTitle()); ?>
</title>
<meta http-equiv="X-UA-Compatible" content="IE=edge">
- <meta name="referrer" content="never">
+ <meta name="referrer" content="no-referrer">
<meta name="viewport" content="width=device-width, minimum-scale=1.0, maximum-scale=1.0">
<meta name="apple-itunes-app" content="app-id=<?php p($theme->getiTunesAppId()); ?>">
<meta name="theme-color" content="<?php p($theme->getColorPrimary()); ?>">
diff --git a/core/templates/layout.user.php b/core/templates/layout.user.php
index c6885f692d5..c8c8ec84efa 100644
--- a/core/templates/layout.user.php
+++ b/core/templates/layout.user.php
@@ -9,7 +9,7 @@
?>
</title>
<meta http-equiv="X-UA-Compatible" content="IE=edge">
- <meta name="referrer" content="never">
+ <meta name="referrer" content="no-referrer">
<meta name="viewport" content="width=device-width, initial-scale=1.0, minimum-scale=1.0, maximum-scale=1.0">
<meta name="apple-itunes-app" content="app-id=<?php p($theme->getiTunesAppId()); ?>">
<meta name="apple-mobile-web-app-capable" content="yes">