Skip to content

Commit d909ba3

Browse files
committed
Allow linode and akamai first-party scripts in CSP
1 parent f1a3e8e commit d909ba3

2 files changed

Lines changed: 2 additions & 2 deletions

File tree

config/development/server.toml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ X-Frame-Options = "DENY"
66
X-XSS-Protection = "1; mode=block"
77
X-Content-Type-Options = "nosniff"
88
Referrer-Policy = "no-referrer"
9-
Content-Security-Policy = "script-src 'self' *.googletagmanager.com *.adobedtm.com *.trustarc.com *.weglot.com *.disqus.com 'unsafe-eval' 'unsafe-inline'"
9+
Content-Security-Policy = "script-src 'self' *.googletagmanager.com *.adobedtm.com *.trustarc.com *.weglot.com *.disqus.com *.linode.com *.akamai.com 'unsafe-eval' 'unsafe-inline'"
1010

1111
[[headers]]
1212
for = "/**.{css,jpg,js}"

netlify.toml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -54,7 +54,7 @@ X-Frame-Options = "DENY"
5454
X-XSS-Protection = "1; mode=block"
5555
X-Content-Type-Options = "nosniff"
5656
Referrer-Policy = "no-referrer"
57-
Content-Security-Policy = "script-src 'self' *.googletagmanager.com *.trustarc.com *.weglot.com *.disqus.com 'unsafe-eval' 'unsafe-inline'"
57+
Content-Security-Policy = "script-src 'self' *.googletagmanager.com *.trustarc.com *.weglot.com *.disqus.com *.linode.com *.akamai.com 'unsafe-eval' 'unsafe-inline'"
5858

5959
[[redirects]]
6060
from = "/docs/blog/*"

0 commit comments

Comments
 (0)