@@ -148,6 +148,7 @@ async function onExpressJsSetup(server) {
148
148
+ ' https://browser.sentry-cdn.com'
149
149
+ ' https://cdn.heapanalytics.com'
150
150
+ ' https://cdn.segment.com'
151
+ + ' https://connect.facebook.net'
151
152
+ ' https://d1of0acg2orgco.cloudfront.net'
152
153
+ ' https://d24oibycet9bsb.cloudfront.net'
153
154
+ ' https://fast.trychameleon.com'
@@ -170,22 +171,30 @@ async function onExpressJsSetup(server) {
170
171
+ ' https://api.segment.io'
171
172
+ ' https://cdn.segment.com'
172
173
+ ' https://ekr.zdassets.com'
174
+ + ' https://fast.trychameleon.com'
173
175
+ ' https://topcoder.zendesk.com'
174
176
+ ' https://stats.g.doubleclick.net'
175
177
+ ' https://www.google-analytics.com;'
176
178
+ " font-src 'self'"
177
179
+ ' data:'
178
180
+ ` ${ config . CDN . PUBLIC } `
181
+ + ' https://d1of0acg2orgco.cloudfront.net'
182
+ + ' https://d24oibycet9bsb.cloudfront.net'
179
183
+ ' https://43d132d5dbff47c59d9d53ad448f93c2.js.ubembed.com;'
180
184
+ " frame-src 'self'"
181
185
+ ` ${ config . URL . AUTH } ;`
182
186
+ " img-src 'self'"
183
187
+ ` ${ config . CDN . PUBLIC } `
184
188
+ ' https://cdn.segment.com'
189
+ + ' https://d1of0acg2orgco.cloudfront.net'
190
+ + ' https://d24oibycet9bsb.cloudfront.net'
185
191
+ ' https://d2nl5eqipnb33q.cloudfront.net'
186
192
+ ' https://images.ctfassets.net'
193
+ + ' https://heapanalytics.com'
194
+ + ' https://q.quora.com'
187
195
+ ' https://topcoder-prod-media.s3.amazonaws.com'
188
196
+ ' https://www.facebook.com'
197
+ + ' https://www.google-analytics.com'
189
198
+ ' https://www.google.com;'
190
199
+ " manifest-src 'self';"
191
200
+ " media-src 'self';"
0 commit comments