From 8df0fdd8c311752de685ed10f7e8ec1d5d22f69c Mon Sep 17 00:00:00 2001 From: Henk Verlinde Date: Tue, 16 Mar 2021 15:44:00 +0100 Subject: [PATCH] fix: update content security headers --- layouts/index.headers | 3 +-- layouts/partials/footer/script-footer.html | 3 +-- 2 files changed, 2 insertions(+), 4 deletions(-) diff --git a/layouts/index.headers b/layouts/index.headers index 513de04c3..9db4ef95c 100644 --- a/layouts/index.headers +++ b/layouts/index.headers @@ -2,8 +2,7 @@ Strict-Transport-Security: max-age=31536000; includeSubDomains; preload X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block - Content-Security-Policy: default-src 'self'; frame-ancestors https://jamstackthemes.dev; manifest-src 'self'; connect-src 'self'; font-src 'self'; img-src 'self' data:; script-src 'self' 'nonce-D9lYHmnDA/pVyXs6HQZq4gBs7gwpDOjyJz/jQNYQ/ziWEj7+xYf9zOwDw6kmrhYc -gwPqbqBXeoOEfPXt9EiIyQ=='; style-src 'self' + Content-Security-Policy: default-src 'self'; frame-ancestors https://jamstackthemes.dev; manifest-src 'self'; connect-src 'self'; font-src 'self'; img-src 'self' data:; script-src 'self' 'nonce-0xLTIcPMhXKdCDrYV7U9Lg=='; style-src 'self' X-Frame-Options: SAMEORIGIN Referrer-Policy: strict-origin Feature-Policy: geolocation 'self' diff --git a/layouts/partials/footer/script-footer.html b/layouts/partials/footer/script-footer.html index 745a6d3bd..1b1375fc5 100644 --- a/layouts/partials/footer/script-footer.html +++ b/layouts/partials/footer/script-footer.html @@ -61,8 +61,7 @@ {{ end -}} {{ if .Site.Params.options.kaTex -}} - + {{ end -}} {{ if .Site.Params.options.flexSearch -}}