Configure mediawiki's security headers

Mediawiki allows the configuration of Referrer policy, which is set to
the same value as, retaining the referrer for https://
links as they might be beneficial as promotion. Set the X-Frame-Options
header to deny framing.
......@@ -57,3 +57,7 @@ $wgMainCacheType = CACHE_MEMCACHED;
$wgParserCacheType = CACHE_MEMCACHED;
$wgMessageCacheType = CACHE_MEMCACHED;
$wgMemCachedServers = [ "unix://{{ archwiki_memcached_socket }}:0" ];
# security headers
$wgReferrerPolicy = ["no-referrer-when-downgrade"];
$wgEditPageFrameOptions = "DENY";
