fix: relaxing CSP settings

This commit is contained in:
Simon Hyll
2024-05-21 04:53:38 +02:00
parent aa6461df2e
commit 67adf37017
2 changed files with 5 additions and 1 deletions

View File

@@ -2,4 +2,4 @@
X-Frame-Options: DENY
X-XSS-Protection: 1; mode=block
X-Content-Type-Options: nosniff
Content-Security-Policy: default-src 'self';
Content-Security-Policy: default-src 'self'; style-src 'self' 'unsafe-inline'; img-src self data: http: https:; script-src self 'unsafe-inline' 'unsafe-eval'; script-src-elem self 'unsafe-inline' 'unsafe-eval' http:; worker-src 'self' data:;