undo an invalid CSP change

pull/1/head
ansuz 2022-02-11 20:49:38 +05:30
parent c0b379b535
commit 49446fe02b
1 changed files with 1 additions and 1 deletions

View File

@ -18,7 +18,7 @@ Default.commonCSP = function (domain, sandbox) {
*/
"child-src 'self' blob: " + domain + sandbox,
// IE/Edge
`frame-src 'self' blob:${sandbox}/* blob:${domain}/* ${domain} ${sandbox}`,
"'frame-src 'self' blob: " + sandbox,
/* this allows connections over secure or insecure websockets
if you are deploying to production, you'll probably want to remove