Skip to content

Instantly share code, notes, and snippets.

@dvogeldev
Created May 30, 2019 21:51
Show Gist options
  • Save dvogeldev/0a0f1d226def68660560e368f68682b3 to your computer and use it in GitHub Desktop.
Save dvogeldev/0a0f1d226def68660560e368f68682b3 to your computer and use it in GitHub Desktop.
Revised Csp headers file
{
"base-uri": "'none'",
"default-src": ["'self'", "data:", "https:", "wss:"],
"style-src": ["'self'", "data:", "https:", "wss:", "'unsafe-inline'"],
"script-src": [
"'self'",
"https://api.scrivito.com",
"https://app.intercom.io",
"https://assets.scrivito.com",
"https://js.intercomcdn.com",
"https://widget.intercom.io",
"https://www.google-analytics.com",
"https://services.cognitoform.com",
"https://app.conversiobot.com"
],
"object-src": "'none'",
"block-all-mixed-content": true
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment