]> git.openstreetmap.org Git - rails.git/commitdiff
update script-src CSP rules for iD
authorMartin Raifer <martin@raifer.tech>
Sun, 26 May 2024 13:24:57 +0000 (15:24 +0200)
committerGitHub <noreply@github.com>
Sun, 26 May 2024 13:24:57 +0000 (15:24 +0200)
app/controllers/site_controller.rb

index 172be56531df7e444e4c7ed3b94236480378c660..ad19df50e463bd1b292457a369534a2aa351b89e 100644 (file)
@@ -19,7 +19,6 @@ class SiteController < ApplicationController
   content_security_policy(:only => :id) do |policy|
     policy.connect_src("*")
     policy.img_src("*", :blob)
-    policy.script_src(*policy.script_src, "dev.virtualearth.net", :unsafe_eval)
     policy.style_src(*policy.style_src, :unsafe_inline)
   end