Optional ReadonlycontentOptional ReadonlycontentDetermines whether CloudFront includes the X-Content-Type-Options HTTP response header with its value set to nosniff.
Optional ReadonlyframeDetermines whether CloudFront includes the X-Frame-Options HTTP response header and the header’s value.
Optional ReadonlyreferrerDetermines whether CloudFront includes the Referrer-Policy HTTP response header and the header’s value.
Strict transport security configuration
Optional ReadonlyxssDetermines whether CloudFront includes the X-XSS-Protection HTTP response header and the header’s value.
The policy directives and their values that CloudFront includes as values for the Content-Security-Policy HTTP response header.