fix: adds CSP header (#3754)

This commit is contained in:
Piyush Gupta
2024-10-25 14:28:59 +05:30
committed by GitHub
parent deea760a17
commit 8e16d8daf6
+5
View File
@@ -162,6 +162,11 @@ const nextConfig = {
key: "X-Content-Type-Options",
value: "nosniff",
},
{
key: "Content-Security-Policy",
value:
"default-src 'self'; script-src 'self' 'unsafe-inline' https:; style-src 'self' 'unsafe-inline' https:; img-src 'self' data: https:; font-src 'self' https:; connect-src 'self' https:; frame-src 'self'; media-src 'self' https:; object-src 'none'; base-uri 'self'; form-action 'self';",
},
],
},
{