Allow blob image source [SCI-8617]

This commit is contained in:
Martin Artnik 2023-06-06 10:28:24 +02:00
parent 50765fcb29
commit 18214f749b

View file

@ -8,7 +8,7 @@ Rails.application.config.content_security_policy do |policy|
policy.default_src :self, :https policy.default_src :self, :https
policy.base_uri :self policy.base_uri :self
policy.font_src :self, :https, :data policy.font_src :self, :https, :data
policy.img_src :self, :https, :data policy.img_src :self, :https, :data, :blob
policy.object_src :none policy.object_src :none
policy.script_src :self, :https, :unsafe_eval policy.script_src :self, :https, :unsafe_eval
policy.style_src :self, :https, :unsafe_inline, :data policy.style_src :self, :https, :unsafe_inline, :data