From f359c06d25aceaac394621fb05d737cba7c952a8 Mon Sep 17 00:00:00 2001 From: navaneeth Date: Mon, 4 Oct 2021 21:52:44 +0530 Subject: [PATCH] Disable insecure requests upgrade (CSP) --- server/src/main.ts | 1 + 1 file changed, 1 insertion(+) diff --git a/server/src/main.ts b/server/src/main.ts index 0dd00ac703..2d1044226e 100644 --- a/server/src/main.ts +++ b/server/src/main.ts @@ -23,6 +23,7 @@ async function bootstrap() { helmet.contentSecurityPolicy({ useDefaults: true, directives: { + upgradeInsecureRequests: null, 'img-src': ['*', 'data:'], 'script-src': [ 'maps.googleapis.com',