@@ -146,11 +146,18 @@ async function onExpressJsSetup(server) {
146
146
+ ' https://assets.ubembed.com'
147
147
+ ' https://assets.zendesk.com'
148
148
+ ' https://browser.sentry-cdn.com'
149
+ + ' https://cdn.heapanalytics.com'
149
150
+ ' https://cdn.segment.com'
151
+ + ' https://d1of0acg2orgco.cloudfront.net'
152
+ + ' https://d24oibycet9bsb.cloudfront.net'
150
153
+ ' https://fast.trychameleon.com'
151
- + ' https://static.zdassets.com;'
154
+ + ' https://static.zdassets.com'
155
+ + ' https://www.googletagmanager.com;'
152
156
+ " style-src 'report-sample' 'self' 'unsafe-inline'"
153
- + ` ${ config . CDN . PUBLIC } ;`
157
+ + ` ${ config . CDN . PUBLIC } `
158
+ + ' https://d1of0acg2orgco.cloudfront.net'
159
+ + ' https://d24oibycet9bsb.cloudfront.net'
160
+ + ' https://d2nl5eqipnb33q.cloudfront.net;'
154
161
+ " object-src 'none';"
155
162
+ " base-uri 'self';"
156
163
+ " connect-src 'self'"
@@ -174,11 +181,12 @@ async function onExpressJsSetup(server) {
174
181
+ ` ${ config . URL . AUTH } ;`
175
182
+ " img-src 'self'"
176
183
+ ` ${ config . CDN . PUBLIC } `
177
- + ' https://www.facebook.com'
178
- + ' https://images.ctfassets.net'
179
184
+ ' https://cdn.segment.com'
180
- + ' https://www.google.com'
181
- + ' https://topcoder-prod-media.s3.amazonaws.com;'
185
+ + ' https://d2nl5eqipnb33q.cloudfront.net'
186
+ + ' https://images.ctfassets.net'
187
+ + ' https://topcoder-prod-media.s3.amazonaws.com'
188
+ + ' https://www.facebook.com'
189
+ + ' https://www.google.com;'
182
190
+ " manifest-src 'self';"
183
191
+ " media-src 'self';"
184
192
+ ' report-uri https://623d4c23f90d055298b24042.endpoint.csper.io/?v=0;'
0 commit comments