From 1ddb9b80f1c398ea6bf81e8712b31974bbde1e80 Mon Sep 17 00:00:00 2001 From: Ben Hall Date: Sun, 16 Feb 2025 20:16:10 +0000 Subject: [PATCH] fix csp Signed-off-by: Ben Hall --- frontend/public/_headers | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/frontend/public/_headers b/frontend/public/_headers index f4bd2af..1473264 100644 --- a/frontend/public/_headers +++ b/frontend/public/_headers @@ -1,5 +1,5 @@ /* - Content-Security-Policy: default-src 'none'; script-src 'self' 'unsafe-eval' https://static.cloudflareinsights.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://use.fontawesome.com; img-src 'self' https://cdn.discordapp.com https://media.discordapp.net https://image-cdn.ticketsbot.cloud; font-src https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com; connect-src https://api.ticketsbot.cloud wss://api.ticketsbot.cloud https://cloudflareinsights.com/cdn-cgi/rum; media-src https://cdn.discordapp.com https://media.discordapp.net; frame-src 'self' + Content-Security-Policy: default-src 'none'; script-src 'self' 'unsafe-eval' https://static.cloudflareinsights.com; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://use.fontawesome.com; img-src 'self' https://cdn.discordapp.com https://media.discordapp.net https://image-cdn.ticketsbot.cloud; font-src https://fonts.googleapis.com https://fonts.gstatic.com https://use.fontawesome.com; connect-src https://s3.uk.io.cloud.ovh.net https://api.ticketsbot.cloud wss://api.ticketsbot.cloud https://cloudflareinsights.com/cdn-cgi/rum; media-src https://cdn.discordapp.com https://media.discordapp.net; frame-src 'self' /manage/*/transcripts/view/* ! Content-Security-Policy