commit c1d867bff99077fc86ff4085c6f7bd5e242805f0
parent 7659c465cab25f296339a1addf5be40e6a991cf1
author: nathanael <nathanael@dalliard.ch>
date: Thu, 16 Oct 2025 06:11:22 +0000
s1: remove script-src
diffstat:
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/s1/sysfiles/relayd.conf b/s1/sysfiles/relayd.conf
@@ -15,7 +15,7 @@ http protocol https {
match response header set "X-Frame-Options" value "deny"
match response header set "Referrer-Policy" value "no-referrer"
match response header set "Content-Security-Policy" value \
- "default-src 'self'; base-uri 'none'; img-src 'self' data:; script-src 'self' 'unsafe-inline'; form-action 'self'; frame-ancestors 'none'"
+ "default-src 'self'; base-uri 'none'; img-src 'self' data:; form-action 'self'; frame-ancestors 'none'"
match response header set "Permissions-Policy" value \
"geolocation=(), microphone=(), camera=()"