How can I add anti-clickjacking X-Frame-Options header to my installation of Discourse?

Posted August 13, 2016 3.2k views
NginxSecurityUbuntu 16.04

I found security problem with my installation of Discourse.
How can I add http header X-Frame-Option DENY to my app.yml file?

These answers are provided by our Community. If you find them useful, show some love by clicking the heart. If you run into issues leave a comment, or add your own answer to help others.

Submit an Answer
1 answer

You can follow this guide to add a custom HTTP header to your Discourse forum.