From 337d0ebe376bc1f2e592b2cecfff9f9d6d9da246 Mon Sep 17 00:00:00 2001 From: Shimul Date: Sun, 21 Mar 2021 05:22:06 +0530 Subject: [PATCH] Handle manifest-src in CSP (#231) --- app/__init__.py | 1 + 1 file changed, 1 insertion(+) diff --git a/app/__init__.py b/app/__init__.py index 5edb9b5..e0cf88e 100644 --- a/app/__init__.py +++ b/app/__init__.py @@ -41,6 +41,7 @@ app.config['BANG_FILE'] = os.path.join( app.config['BANG_PATH'], 'bangs.json') app.config['CSP'] = 'default-src \'none\';' \ + 'manifest-src \'self\';' \ 'img-src \'self\';' \ 'style-src \'self\' \'unsafe-inline\';' \ 'script-src \'self\';' \