diff --git a/api/router.go b/api/router.go index ac91c40..c1bd6d1 100644 --- a/api/router.go +++ b/api/router.go @@ -143,6 +143,7 @@ func (mh *mainHandler) handle(w http.ResponseWriter, r *http.Request) error { w.Header().Set( "Content-Security-Policy", "default-src 'self'; "+ + "connect-src https://*.safing.io 'self'; "+ "style-src 'self' 'unsafe-inline'; "+ "img-src 'self' data:", )