Update.
This commit is contained in:
parent
9e1eb9f1e5
commit
9a39bedd3a
@ -9,7 +9,15 @@
|
|||||||
from aiohttp import web
|
from aiohttp import web
|
||||||
import secrets
|
import secrets
|
||||||
|
|
||||||
csp_policy = "default-src 'self'; script-src 'self' 'nonce-{nonce}'; style-src 'self';"
|
|
||||||
|
csp_policy = (
|
||||||
|
"default-src 'self'; "
|
||||||
|
"script-src 'self' https://*.cloudflare.com https://molodetz.nl 'nonce-{nonce}'; "
|
||||||
|
"style-src 'self' https://*.cloudflare.com https://molodetz.nl; "
|
||||||
|
"img-src 'self' https://*.cloudflare.com https://molodetz.nl data:; "
|
||||||
|
"connect-src 'self' https://*.cloudflare.com https://molodetz.nl;"
|
||||||
|
)
|
||||||
|
|
||||||
|
|
||||||
def generate_nonce():
|
def generate_nonce():
|
||||||
return secrets.token_hex(16)
|
return secrets.token_hex(16)
|
||||||
|
Loading…
Reference in New Issue
Block a user