1
0
mirror of https://github.com/searxng/searxng.git synced 2024-11-10 23:20:12 +01:00
searxng/tests/unit
Markus Heiser ab8e5383fb [mod] remove X-XSS-Protection headers
Deprecated header not used by browsers nowadays[1]:

"""In modern browsers, X-XSS-Protection has been deprecated in favor of the
Content-Security-Policy to disable the use of inline JavaScript. Its use can
introduce XSS vulnerabilities in otherwise safe websites. This should not be
used unless you need to support older web browsers that don’t yet support CSP.
It is thus recommended to set the header as X-XSS-Protection: 0."""[2]

[1] https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/X-XSS-Protection
[2] https://infosec.mozilla.org/guidelines/web_security#x-xss-protection

Closes: https://github.com/searxng/searxng/issues/3171
Signed-off-by: Markus Heiser <markus.heiser@darmarit.de>
2024-01-31 17:23:41 +01:00
..
engines [format.python] initial formatting of the python code 2021-12-27 09:26:22 +01:00
network bing.py: resolve bing.com/ck/a redirections 2022-07-08 22:02:21 +02:00
settings [mod] remove X-XSS-Protection headers 2024-01-31 17:23:41 +01:00
__init__.py [format.python] initial formatting of the python code 2021-12-27 09:26:22 +01:00
test_answerers.py [format.python] initial formatting of the python code 2021-12-27 09:26:22 +01:00
test_engines_init.py Fix: don't crash when engine or name is missing in settings.yml 2022-12-04 23:43:59 +01:00
test_exceptions.py Add search.suspended_times settings 2023-01-15 09:00:32 +00:00
test_external_bangs.py [fix] external bangs: don't overwrite Bangs in data trie 2022-01-12 19:37:13 +01:00
test_locales.py [fix] spelling 2023-09-18 16:20:27 +02:00
test_plugins.py [mod] isolation of botdetection from the limiter 2023-11-01 06:44:56 +01:00
test_preferences.py [fix] move locale code from webapp.py to locales.py and fix #1303 2022-06-12 10:52:26 +02:00
test_query.py [feat] implement feeling lucky feature 2023-09-19 09:40:57 +02:00
test_results.py [format.python] initial formatting of the python code 2021-12-27 09:26:22 +01:00
test_search.py [feat] implement feeling lucky feature 2023-09-19 09:40:57 +02:00
test_settings_loader.py [fix] typos / reported by @kianmeng in searx PR-3366 2022-09-27 18:32:14 +02:00
test_utils.py [fix] HTMLParser: undocumented not implemented method 2023-10-22 10:35:02 +02:00
test_webadapter.py [fix] changeover of the unit tests to the simple theme 2022-02-20 18:51:12 +01:00
test_webapp.py [fix] spelling 2023-09-18 16:20:27 +02:00
test_webutils.py [fix] do highlight replacement at once 2024-01-29 13:15:37 +01:00