Skip to content

Violation in Content Security Policy when making a request to a alternative app backend #6703

Answered by gaecoli
ttschuemp asked this question in Q&A
Discussion options

You must be logged in to vote

This default config is "default-src 'self'; style-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-eval'; font-src 'self' data:; img-src 'self' http: https: data: blob:; object-src 'none'; frame-ancestors 'none'; frame-src redash.io;",

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@gaecoli
Comment options

Answer selected by ttschuemp
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants