Compare commits

..

1 Commits
v0.4.0 ... main

Author SHA1 Message Date
ddb4b35181 helmet.go removed wildcard directive. 2025-05-18 22:48:11 +05:30

View File

@ -268,7 +268,7 @@ func (csp *CSP) value() string {
sb.WriteString(fmt.Sprintf( sb.WriteString(fmt.Sprintf(
"style-src %s; ", "style-src %s; ",
cspNormalised(csp.StyleSrc, []string{"self", "https:", "unsafe-inline"}), cspNormalised(csp.StyleSrc, []string{"self", "unsafe-inline"}),
)) ))
sb.WriteString(fmt.Sprintf( sb.WriteString(fmt.Sprintf(
@ -288,7 +288,7 @@ func (csp *CSP) value() string {
sb.WriteString(fmt.Sprintf( sb.WriteString(fmt.Sprintf(
"font-src %s; ", "font-src %s; ",
cspNormalised(csp.FontSrc, []string{"self", "https:", "data:"}), cspNormalised(csp.FontSrc, []string{"self", "data:"}),
)) ))
sb.WriteString(fmt.Sprintf( sb.WriteString(fmt.Sprintf(