consensus/docker/nginx/snippets/csp.conf
DataHoarder 55661a12da
All checks were successful
continuous-integration/drone/push Build is passing
WIP: Bootstrap-based responsive interface, CSS only
2024-03-20 13:37:26 +01:00

1 line
386 B
Plaintext

add_header Content-Security-Policy "default-src 'none'; img-src blob: data: 'self'; object-src 'none'; style-src 'unsafe-inline' 'self'; style-src-elem 'unsafe-inline' 'self'; style-src-attr 'unsafe-inline'; script-src 'none'; script-src-attr 'none'; script-src-elem 'none'; prefetch-src 'self'; base-uri 'none'; form-action 'self'; frame-ancestors 'none'; navigate-to * 'self'" always;