> If I care about clickjacking I should use the `Content-Security-Policy: frame-ancestors 'self'` header. _Originally posted by @simonw in https://github.com/simonw/django-sql-dashboard/issues/45#issuecomment-819222015_