From a185c1e3a687ff8879e5759e2023dd5102467b70 Mon Sep 17 00:00:00 2001
From: mntmn <lukas@mntmn.com>
Date: Mon, 11 May 2020 18:28:48 +0200
Subject: [PATCH] helmet: disable protections for now

---
 spacedeck.js | 12 ++++++------
 1 file changed, 6 insertions(+), 6 deletions(-)

diff --git a/spacedeck.js b/spacedeck.js
index 430cd03..d6505b0 100644
--- a/spacedeck.js
+++ b/spacedeck.js
@@ -71,18 +71,18 @@ app.use(bodyParser.urlencoded({
 }));
 
 app.use(cookieParser());
-app.use(helmet.frameguard())
-app.use(helmet.xssFilter())
-app.use(helmet.hsts({
+//app.use(helmet.frameguard())
+//app.use(helmet.xssFilter())
+/*app.use(helmet.hsts({
   maxAge: 7776000000,
   includeSubDomains: true
-}))
+}))*/
 app.disable('x-powered-by');
-app.use(helmet.noSniff())
+//app.use(helmet.noSniff())
 
 //app.use(require("./middlewares/error_helpers"));
-app.use(require("./middlewares/session"));
 //app.use(require("./middlewares/cors"));
+app.use(require("./middlewares/session"));
 app.use(require("./middlewares/i18n"));
 app.use("/api", require("./middlewares/api_helpers"));
 app.use('/api/spaces/:id', require("./middlewares/space_helpers"));
-- 
GitLab