To make back buttons less likely to show sensitive info.
Signed-off-by: Thomas Berezansky <tsbere@mvlc.org>
Signed-off-by: Michael Peters <mrpeters@library.in.gov>
Signed-off-by: Dan Scott <dscott@laurentian.ca>
# ----------------------------------------------------------------
return $self->redirect_auth unless $self->editor->requestor;
+ # Don't cache anything requiring auth for security reasons
+ $self->apache->headers_out->add("cache-control" => "no-store, no-cache, must-revalidate");
+ $self->apache->headers_out->add("expires" => "-1");
+
return $self->load_email_record if $path =~ m|opac/record/email|;
return $self->load_place_hold if $path =~ m|opac/place_hold|;