From b5e6e67e49f7693192f8ad0965fe862c0bcb5d5c Mon Sep 17 00:00:00 2001 From: Patrick Pacher Date: Tue, 24 Aug 2021 12:04:46 +0200 Subject: [PATCH] Add connect-src entry for *.safing.io --- api/router.go | 1 + 1 file changed, 1 insertion(+) diff --git a/api/router.go b/api/router.go index ac91c40..c1bd6d1 100644 --- a/api/router.go +++ b/api/router.go @@ -143,6 +143,7 @@ func (mh *mainHandler) handle(w http.ResponseWriter, r *http.Request) error { w.Header().Set( "Content-Security-Policy", "default-src 'self'; "+ + "connect-src https://*.safing.io 'self'; "+ "style-src 'self' 'unsafe-inline'; "+ "img-src 'self' data:", )