From f68a032680f914343ee69b8c62d11cd005a2621e Mon Sep 17 00:00:00 2001 From: Mohamed Dawoud <113205913+mdawoud27@users.noreply.github.com> Date: Wed, 2 Jul 2025 17:41:08 +0300 Subject: [PATCH] Potential fix for code scanning alert no. 15: Insecure configuration of Helmet security middleware Co-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com> --- src/__tests__/mocks/app.mock.js | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/__tests__/mocks/app.mock.js b/src/__tests__/mocks/app.mock.js index 0d2d154..93789fd 100644 --- a/src/__tests__/mocks/app.mock.js +++ b/src/__tests__/mocks/app.mock.js @@ -39,7 +39,7 @@ app.use(passport.session()); app.use(cors({ origin: '*', credentials: true })); // Security -app.use(helmet({ contentSecurityPolicy: false })); +app.use(helmet()); // Logging - minimal in test environment app.use(morgan('dev'));