diff --git a/cbreader/settings/base.py b/cbreader/settings/base.py index 2672b88..7bd9c96 100644 --- a/cbreader/settings/base.py +++ b/cbreader/settings/base.py @@ -153,7 +153,7 @@ CSP_DEFAULT_SRC = ("'none'",) CSP_STYLE_SRC = ("'self'", "'unsafe-inline'") CSP_IMG_SRC = ("'self'", "data:") CSP_FONT_SRC = ("'self'",) -CSP_SCRIPT_SRC = ("'self'",) +CSP_SCRIPT_SRC = ("'self'", "'sha256-khnq7MWUoC3fJlH98ZjaCbVOvyd5+vnfVyue/ca55JA='") CSP_CONNECT_SRC = ("'self'",) CSP_INCLUDE_NONCE_IN = ['script-src'] CSP_SCRIPT_SRC_ATTR = ("'self'", "'unsafe-inline'") diff --git a/comic/templates/base.html b/comic/templates/base.html index ea628c7..ab3b208 100644 --- a/comic/templates/base.html +++ b/comic/templates/base.html @@ -24,7 +24,7 @@ -