Allow setting X-Content-Type-Options
Allow settings the X-Content-Type-Options
to prevent MIME-sniffing and force the browser to stick with only the declared content-type.
This could be a simple boolean
as the only valid value for this header is X-Content-Type-Options: nosniff
.
This should be merged after #78 (closed) (but can be worked on in parallel)