Commit Graph

10 Commits (f36ac5083a075dca2b6278b82be655ea7f8e4a3e)

Author SHA1 Message Date
Oliver Günther 5da004491c
Remove https from default-src 7 years ago
Wieland Lindenthal e5fca5fa65 Limit where crowdin can communicate to. 7 years ago
Oliver Günther dd5d9e1a19
Move crowdin CSP into separate helper to override CSP at runtime 7 years ago
Wieland Lindenthal a6f88f552f Add vimeo as allowed frame-src for introductional video (#6227) 7 years ago
Oliver Günther e2d7c7b070
Allow crowdin in-context with CSP, but add opt-out 7 years ago
Oliver Günther 33eeb8c0df
Allow sameorigin iframe for help modal 7 years ago
Oliver Günther 8c477e5860
Fix more project settings related specs 7 years ago
Oliver Günther 07f92b911a
Allow unsafe-eval for Angular JIT 7 years ago
Oliver Günther 06472450c6
Implement CSP with secure_headers gem 7 years ago