Skip to content

Conversation

@olivermrose
Copy link
Collaborator

Apparently running in dev bypasses csp in some aspects regardless

Copilot AI review requested due to automatic review settings December 7, 2025 19:54
Copy link

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

This PR updates the Content Security Policy (CSP) configuration in the Tauri application to allow HTTPS resources and inline styles. The changes address the need to load external resources from various CDNs and APIs while the application is running.

Key changes:

  • Added https: to default-src directive to allow loading external HTTPS resources
  • Added 'unsafe-inline' to style-src directive to permit inline styles

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@olivermrose olivermrose merged commit f5383bc into main Dec 7, 2025
2 checks passed
@olivermrose olivermrose deleted the fix/csp branch December 7, 2025 20:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants