mirror of
https://github.com/HabitRPG/habitica.git
synced 2025-12-13 04:37:36 +01:00
fix(CSP): more Amazon domains
This commit is contained in:
@@ -70,6 +70,7 @@ export default function attachMiddlewares (app, server) {
|
||||
directives: {
|
||||
defaultSrc: [
|
||||
'*.habitica.com',
|
||||
'*.amazon.com',
|
||||
'*.amazonaws.com',
|
||||
'*.loggly.com',
|
||||
'*.payments-amazon.com',
|
||||
@@ -84,6 +85,7 @@ export default function attachMiddlewares (app, server) {
|
||||
'\'unsafe-eval\'',
|
||||
'\'unsafe-inline\'',
|
||||
'*.habitica.com',
|
||||
'*.amazon.com',
|
||||
'*.amazonaws.com',
|
||||
'*.loggly.com',
|
||||
'*.payments-amazon.com',
|
||||
|
||||
Reference in New Issue
Block a user