From 2f8f7fa3427f7962ec3779e7d91c667e734f078e Mon Sep 17 00:00:00 2001 From: Jalil Arfaoui Date: Fri, 17 Jan 2025 02:19:29 +0100 Subject: [PATCH] fix(piano-analytics): ajoute tag.aticdn.net dans les autorisations connect-src --- site/netlify.base.toml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/site/netlify.base.toml b/site/netlify.base.toml index 616e82b05..e3ba42ab9 100644 --- a/site/netlify.base.toml +++ b/site/netlify.base.toml @@ -4,7 +4,7 @@ for = "/*" Content-Security-Policy = """\ default-src 'self' mon-entreprise.fr; \ style-src 'self' 'unsafe-inline'; \ - connect-src 'self' *.incubateur.net raw.githubusercontent.com github.com tm.urssaf.fr recherche-entreprises.api.gouv.fr api.recherche-entreprises.fabrique.social.gouv.fr geo.api.gouv.fr *.algolia.net *.algolianet.com polyfill.io jedonnemonavis.numerique.gouv.fr user-images.githubusercontent.com; \ + connect-src 'self' *.incubateur.net raw.githubusercontent.com github.com tag.aticdn.net tm.urssaf.fr recherche-entreprises.api.gouv.fr api.recherche-entreprises.fabrique.social.gouv.fr geo.api.gouv.fr *.algolia.net *.algolianet.com polyfill.io jedonnemonavis.numerique.gouv.fr user-images.githubusercontent.com; \ form-action 'self' *.sibforms.com *.incubateur.net; \ script-src 'self' 'unsafe-inline' 'unsafe-eval' tm.urssaf.fr tag.aticdn.net *.incubateur.net stonly.com code.jquery.com polyfill.io; \ img-src 'self' data: mon-entreprise.urssaf.fr tm.urssaf.fr user-images.githubusercontent.com github.com *.s3.amazonaws.com jedonnemonavis.numerique.gouv.fr; \