This commit is contained in:
KANE LAZENI 2026-04-20 15:59:59 +00:00
parent 9a72931396
commit 17c2b40a06

View File

@ -17,10 +17,10 @@ ServerSignature Off
Header set Strict-Transport-Security "max-age=31536000; includeSubDomains"
Header set Content-Security-Policy "default-src 'self'; \
script-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; \
style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; \
font-src 'self' https://fonts.gstatic.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; \
connect-src 'self' https://cdn.jsdelivr.net https://cdnjs.cloudflare.com; \
script-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net ; \
style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdn.jsdelivr.net; \
font-src 'self' https://fonts.gstatic.com https://cdn.jsdelivr.net; \
connect-src 'self' https://cdn.jsdelivr.net; \
img-src 'self' data: https:"
Header set Referrer-Policy "strict-origin-when-cross-origin"