headers->set( 'Content-Security-Policy', "script-src 'self' 'unsafe-inline' 'unsafe-eval' *;" ); return $response; } }