From 416fca5703c08dd5af1ef6a42fd2172dc402b6db Mon Sep 17 00:00:00 2001 From: Martin Raifer Date: Sun, 26 May 2024 15:24:57 +0200 Subject: [PATCH] update script-src CSP rules for iD --- app/controllers/site_controller.rb | 1 - 1 file changed, 1 deletion(-) diff --git a/app/controllers/site_controller.rb b/app/controllers/site_controller.rb index 172be5653..ad19df50e 100644 --- a/app/controllers/site_controller.rb +++ b/app/controllers/site_controller.rb @@ -19,7 +19,6 @@ class SiteController < ApplicationController content_security_policy(:only => :id) do |policy| policy.connect_src("*") policy.img_src("*", :blob) - policy.script_src(*policy.script_src, "dev.virtualearth.net", :unsafe_eval) policy.style_src(*policy.style_src, :unsafe_inline) end -- 2.39.5