diff --git a/src/redoc-module.ts b/src/redoc-module.ts index 73dcd19..bece00e 100644 --- a/src/redoc-module.ts +++ b/src/redoc-module.ts @@ -128,7 +128,7 @@ export class RedocModule { // Content-Security-Policy: worker-src 'self' blob: res.setHeader( 'Content-Security-Policy', - "default-src * 'unsafe-inline' 'unsafe-eval'; script-src * 'unsafe-inline' 'unsafe-eval'; worker-src * 'unsafe-inline' 'unsafe-eval' blob:; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src *; style-src * 'unsafe-inline';" + "default-src * 'unsafe-inline' 'unsafe-eval'; script-src * 'unsafe-inline' 'unsafe-eval'; child-src * 'unsafe-inline' 'unsafe-eval' blob:; worker-src * 'unsafe-inline' 'unsafe-eval' blob:; connect-src * 'unsafe-inline'; img-src * data: blob: 'unsafe-inline'; frame-src *; style-src * 'unsafe-inline';" ); // whoosh res.send(redocHTML);