Skip to content

Commit

Permalink
DONOTMERGE: change CSP for local development
Browse files Browse the repository at this point in the history
  • Loading branch information
jsugarman committed Nov 29, 2024
1 parent 5db9c28 commit 0c466df
Showing 1 changed file with 2 additions and 1 deletion.
3 changes: 2 additions & 1 deletion config/initializers/content_security_policy.rb
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,8 @@
"https://www.googletagmanager.com"
policy.connect_src :self,
GOOGLE_ANALYTICS_DOMAIN,
"https://*.justice.gov.uk"
"https://*.justice.gov.uk",
"http://127.0.0.1:3000"
end
Rails.application.config.content_security_policy_nonce_generator = ->(request) { request.session.id.to_s }
Rails.application.config.content_security_policy_nonce_directives = %w[script-src]

0 comments on commit 0c466df

Please sign in to comment.