From 4905621e6e189b0a69bd19dba96f5949004fd55a Mon Sep 17 00:00:00 2001 From: Angela Tran Date: Wed, 9 Oct 2024 23:01:40 +0000 Subject: [PATCH] fix: CSP_FRAME_SRC was getting re-assigned instead of being added to it made sense to re-assign it when the default value was 'none', but now we will always have at least *.littlepay.com --- benefits/settings.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/benefits/settings.py b/benefits/settings.py index ff4f47845..127743daa 100644 --- a/benefits/settings.py +++ b/benefits/settings.py @@ -312,7 +312,7 @@ def RUNTIME_ENVIRONMENT(): if RECAPTCHA_ENABLED: env_frame_src.append("https://www.google.com") if len(env_frame_src) > 0: - CSP_FRAME_SRC = env_frame_src + CSP_FRAME_SRC.extend(env_frame_src) CSP_IMG_SRC = [ "'self'",