Skip to content

Commit d6eff5d

Browse files
committed
feat: extend CSP policies to support Google Fonts
- Added `https://fonts.googleapis.com` to `style-src`. - Added `https://fonts.gstatic.com` to `font-src`.
1 parent 49debd5 commit d6eff5d

1 file changed

Lines changed: 7 additions & 1 deletion

File tree

infra/cloudfront.tf

Lines changed: 7 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -17,7 +17,12 @@ locals {
1717
csp_style_src_allow = [
1818
"'self'",
1919
"'unsafe-inline'",
20-
"https://casteels.dev"
20+
"https://casteels.dev",
21+
"https://fonts.googleapis.com"
22+
]
23+
csp_font_src_allow = [
24+
"'self'",
25+
"https://fonts.gstatic.com"
2126
]
2227
csp_img_src_allow = [
2328
"'self'",
@@ -39,6 +44,7 @@ locals {
3944
"script-src ${join(" ", local.csp_script_src_allow)}",
4045
"script-src-elem ${join(" ", local.csp_script_src_allow)}",
4146
"style-src ${join(" ", local.csp_style_src_allow)}",
47+
"font-src ${join(" ", local.csp_font_src_allow)}",
4248
"img-src ${join(" ", local.csp_img_src_allow)}",
4349
"frame-src ${join(" ", local.csp_frame_src_allow)}",
4450
"connect-src ${join(" ", local.csp_connect_src_allow)}"

0 commit comments

Comments
 (0)