feat: Update Content-Security-Policy to allow file: frame-src #38

- Updated Content-Security-Policy directive to allow frame-src from file: in the HTML document.
This commit is contained in:
kangfenmao 2024-09-05 17:18:46 +08:00
parent a48d24de26
commit d809f50c0e

View File

@ -5,7 +5,7 @@
<meta name="viewport" content="initial-scale=1, width=device-width" /> <meta name="viewport" content="initial-scale=1, width=device-width" />
<meta <meta
http-equiv="Content-Security-Policy" http-equiv="Content-Security-Policy"
content="default-src 'self'; connect-src *; script-src 'self' *; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' *; font-src 'self' data: *; img-src 'self' data:; frame-src * file:" /> content="default-src 'self'; connect-src *; script-src 'self' *; worker-src 'self' blob:; style-src 'self' 'unsafe-inline' *; font-src 'self' data: *; img-src 'self' data: *; frame-src * file:" />
</head> </head>
<body> <body>
<div id="root"></div> <div id="root"></div>