From 16d07c5f05ac8669fad8744bcb494afc847e967b Mon Sep 17 00:00:00 2001 From: Rohan Kumar Date: Sat, 26 Dec 2020 20:44:05 -0800 Subject: [PATCH] Devserver: fix CSP to allow images from seirdy.one --- config.toml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/config.toml b/config.toml index 338fb78..197e02c 100644 --- a/config.toml +++ b/config.toml @@ -94,6 +94,6 @@ Referrer-Policy = "no-referrer" X-XSS-Protection = "1; mode=block" X-FROG-UNSAFE = "1" X-UA-Compatible = "IE=edge" -Content-Security-Policy = "default-src 'none'; img-src 'self'; style-src 'self'; script-src 'none'; frame-ancestors 'none'; base-uri 'none'; form-action 'none'; manifest-src 'self'; upgrade-insecure-requests;" +Content-Security-Policy = "default-src 'none'; img-src 'self' https://seirdy.one; style-src 'self'; script-src 'none'; frame-ancestors 'none'; base-uri 'none'; form-action 'none'; manifest-src 'self'; upgrade-insecure-requests;" Permissions-Policy = "accelerometer=(), camera=(), geolocation=(), gyroscope=(), magnetometer=(), microphone=(), payment=(), usb=()" Cache-Control = "max-age=120, no-transform"