mirror of
https://github.com/discourse/discourse.git
synced 2024-12-03 18:23:39 +08:00
8336e732d3
Defaults to `manifest-src: 'self'` and allows plugins/themes to extend it.
14 lines
364 B
Ruby
14 lines
364 B
Ruby
# frozen_string_literal: true
|
|
|
|
# name: csp_extension
|
|
# about: Fixture plugin that extends default CSP
|
|
# version: 1.0
|
|
# authors: xrav3nz
|
|
|
|
extend_content_security_policy(
|
|
script_src: ['https://from-plugin.com'],
|
|
object_src: ['https://test-stripping.com'],
|
|
frame_ancestors: ['https://frame-ancestors-plugin.ext'],
|
|
manifest_src: ['https://manifest-src.com']
|
|
)
|