The SecureHeaders middleware has the following default value: `$response->headers->set('X-Frame-Options', 'DENY');` This causes an issue when using the DAM package to preview documents in the iframe: <img width="1401" height="1253" alt="Image" src="https://github.com/user-attachments/assets/f8979c1e-def8-4c12-be3f-0265ac6a6a55" />