mirror of
https://github.com/discourse/discourse.git
synced 2025-03-27 07:05:36 +08:00

- Define the CSP based on the requested domain / scheme (respecting force_https) - Update EnforceHostname middleware to allow secondary domains, add specs - Add URL scheme to anon cache key so that CSP headers are cached correctly