From 202a990435a19aac4c9d47fbae4352256b65f883 Mon Sep 17 00:00:00 2001 From: Daniel <45217974+w3bdesign@users.noreply.github.com> Date: Mon, 22 Jul 2024 23:32:15 +0200 Subject: [PATCH] 'unsafe-inline' --- next.config.mjs | 21 +-------------------- 1 file changed, 1 insertion(+), 20 deletions(-) diff --git a/next.config.mjs b/next.config.mjs index 720385c0..561ed617 100644 --- a/next.config.mjs +++ b/next.config.mjs @@ -8,9 +8,8 @@ const nextConfig = { }, ], }, - async headers() { + async headers() { - /* const cspHeader = ` default-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline'; @@ -23,24 +22,6 @@ const nextConfig = { frame-ancestors 'none'; upgrade-insecure-requests; `.replace(/\s{2,}/g, ' ').trim(); - */ - - -const cspHeader = ` - default-src 'self'; -script-src 'report-sample' 'self'; -style-src 'report-sample' 'self'; -object-src 'none'; -base-uri 'self'; -connect-src 'self'; -font-src 'self'; -frame-src 'self'; -img-src 'self'; -manifest-src 'self'; -media-src 'self'; -report-uri https://669ece24abce8c3d2411fdd1.endpoint.csper.io/?v=0; -worker-src 'none'; - `.replace(/\s{2,}/g, ' ').trim(); return [ {