Add Google Fonts to Content Security Policy
pull/291/head
Jimmy Lauzau 7 years ago committed by GitHub
commit 4446412e5c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
  1. 4
      apps/explorer_web/lib/explorer_web/router.ex

@ -11,9 +11,9 @@ defmodule ExplorerWeb.Router do
"content-security-policy" => "\ "content-security-policy" => "\
default-src 'self';\ default-src 'self';\
script-src 'self' 'unsafe-inline' 'unsafe-eval';\ script-src 'self' 'unsafe-inline' 'unsafe-eval';\
style-src 'self' 'unsafe-inline' 'unsafe-eval';\ style-src 'self' 'unsafe-inline' 'unsafe-eval' https://fonts.googleapis.com;\
img-src 'self' 'unsafe-inline' 'unsafe-eval' data:;\ img-src 'self' 'unsafe-inline' 'unsafe-eval' data:;\
font-src 'self' 'unsafe-inline' 'unsafe-eval' data:;\ font-src 'self' 'unsafe-inline' 'unsafe-eval' https://fonts.gstatic.com data:;\
" "
}) })
end end

Loading…
Cancel
Save