We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
2 parents 6cf9f60 + f8e5f10 commit c27c536Copy full SHA for c27c536
1 file changed
static/_headers
@@ -3,7 +3,7 @@
3
X-Content-Type-Options: nosniff
4
Referrer-Policy: strict-origin-when-cross-origin
5
Permissions-Policy: geolocation=(), microphone=(), camera=()
6
- Content-Security-Policy: default-src 'self'; script-src 'self'; style-src 'self'; img-src 'self'; font-src 'self'; object-src 'none'; base-uri 'self'; frame-ancestors 'none'
+ Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self'; font-src 'self'; object-src 'none'; base-uri 'self'; frame-ancestors 'none'
7
Cross-Origin-Opener-Policy: same-origin
8
Cross-Origin-Embedder-Policy: require-corp
9
X-Frame-Options: DENY
0 commit comments