From fabf5d19597fe2662c08fed5207157a2a46174b1 Mon Sep 17 00:00:00 2001 From: ayush-billore Date: Fri, 8 Dec 2023 17:09:36 +0530 Subject: [PATCH] whitelist fonts Signed-off-by: ayush-billore --- src/supermarket/config/initializers/content_security_policy.rb | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/src/supermarket/config/initializers/content_security_policy.rb b/src/supermarket/config/initializers/content_security_policy.rb index e38502c4d..92a49ca01 100644 --- a/src/supermarket/config/initializers/content_security_policy.rb +++ b/src/supermarket/config/initializers/content_security_policy.rb @@ -6,7 +6,7 @@ Rails.application.config.content_security_policy do |policy| policy.default_src :self, :https - policy.font_src :self, :https, :data + policy.font_src :self, :https, :data, "http://fonts.gstatic.com" policy.img_src :self, :https, :data, "www.googletagmanager.com" policy.script_src :self, :https, "https://www.googletagmanager.com", "https://www.google-analytics.com", "http://cdn.segment.com" policy.object_src :none