@pebosi opened this issue on March 6th 2015

To eliminate sites like piwik71(dot)rssing(dot)com which includes every page of the official forum as an iframe, which maybe confuse users the X-Frame-Options header should be added with SAMEORIGIN.

@mattab commented on February 18th 2017

Thanks for the suggestion, but not sure if that's needed yet, unless there was a clear security issue risk.

This issue was closed on February 18th 2017
Powered by GitHub Issue Mirror