@@ -74,28 +74,28 @@ customJS = []
74
74
# connectionString = "connectionString"
75
75
76
76
# If you want to implement a Content-Security-Policy, add this section
77
- [params .csp ]
78
- childsrc = [" 'self'" ]
79
- fontsrc = [" 'self'" , " https://fonts.gstatic.com" , " https://cdn.jsdelivr.net/" ]
80
- formaction = [" 'self'" ]
81
- framesrc = [" 'self'" ]
82
- imgsrc = [" 'self'" ]
83
- objectsrc = [" 'none'" ]
84
- stylesrc = [
85
- " 'self'" ,
86
- " 'unsafe-inline'" ,
87
- " https://fonts.googleapis.com/" ,
88
- " https://cdn.jsdelivr.net/"
89
- ]
90
- scriptsrc = [
91
- " 'self'" ,
92
- " 'unsafe-inline'" ,
93
- " https://www.google-analytics.com" ,
94
- " https://cdn.jsdelivr.net/"
95
- ]
96
- prefetchsrc = [" 'self'" ]
97
- # connect-src directive – defines valid targets for to XMLHttpRequest (AJAX), WebSockets or EventSource
98
- connectsrc = [" 'self'" , " https://www.google-analytics.com" ]
77
+ # [params.csp]
78
+ # childsrc = ["'self'"]
79
+ # fontsrc = ["'self'", "https://fonts.gstatic.com", "https://cdn.jsdelivr.net/"]
80
+ # formaction = ["'self'"]
81
+ # framesrc = ["'self'", "https://www.youtube.com "]
82
+ # imgsrc = ["'self'"]
83
+ # objectsrc = ["'none'"]
84
+ # stylesrc = [
85
+ # "'self'",
86
+ # "'unsafe-inline'",
87
+ # "https://fonts.googleapis.com/",
88
+ # "https://cdn.jsdelivr.net/",
89
+ # ]
90
+ # scriptsrc = [
91
+ # "'self'",
92
+ # "'unsafe-inline'",
93
+ # "https://www.google-analytics.com",
94
+ # "https://cdn.jsdelivr.net/",
95
+ # ]
96
+ # prefetchsrc = ["'self'"]
97
+ # # connect-src directive – defines valid targets for to XMLHttpRequest (AJAX), WebSockets or EventSource
98
+ # connectsrc = ["'self'", "https://www.google-analytics.com"]
99
99
100
100
[taxonomies ]
101
101
category = " categories"
0 commit comments