Update.
This commit is contained in:
parent
9e1eb9f1e5
commit
9a39bedd3a
@ -9,7 +9,15 @@
|
||||
from aiohttp import web
|
||||
import secrets
|
||||
|
||||
csp_policy = "default-src 'self'; script-src 'self' 'nonce-{nonce}'; style-src 'self';"
|
||||
|
||||
csp_policy = (
|
||||
"default-src 'self'; "
|
||||
"script-src 'self' https://*.cloudflare.com https://molodetz.nl 'nonce-{nonce}'; "
|
||||
"style-src 'self' https://*.cloudflare.com https://molodetz.nl; "
|
||||
"img-src 'self' https://*.cloudflare.com https://molodetz.nl data:; "
|
||||
"connect-src 'self' https://*.cloudflare.com https://molodetz.nl;"
|
||||
)
|
||||
|
||||
|
||||
def generate_nonce():
|
||||
return secrets.token_hex(16)
|
||||
|
Loading…
Reference in New Issue
Block a user