From a13266d06cfdd02a71d5a345f94cf74fbeee76e1 Mon Sep 17 00:00:00 2001 From: Heidi Date: Sat, 16 May 2026 10:40:15 +0100 Subject: [PATCH] security stuff --- server.cjs | 1 + 1 file changed, 1 insertion(+) diff --git a/server.cjs b/server.cjs index 11387f2..d8160fc 100644 --- a/server.cjs +++ b/server.cjs @@ -120,6 +120,7 @@ const CSP_DIRECTIVES = [ "script-src-elem 'self' https://challenges.cloudflare.com", "style-src 'self'", "style-src-elem 'self'", + "style-src-attr 'unsafe-inline'", "img-src 'self' data: blob: https://*.basemaps.cartocdn.com https://basemaps.cartocdn.com", "font-src 'self' data:", "connect-src 'self' https://challenges.cloudflare.com",