Allow inline style tags and remove Bunny font
Some checks failed
linter / quality (push) Has been cancelled
tests / ci (push) Has been cancelled
tests / ui (push) Has been cancelled

This commit is contained in:
Codex Agent
2026-01-24 23:34:10 +01:00
parent 8414305ea3
commit 84e253b61c
4 changed files with 3 additions and 11 deletions

View File

@@ -33,8 +33,6 @@ class ContentSecurityPolicy
return $response;
}
$allowUnsafeInlineStyles = $request->is('event-admin*');
$matomoOrigin = $this->normaliseOrigin(config('services.matomo.url'));
$scriptSources = [
"'self'",
@@ -120,11 +118,7 @@ class ContentSecurityPolicy
$styleSources[] = 'data:';
$connectSources[] = 'https:';
$fontSources[] = 'https:';
$styleElemSources = $styleSources;
if ($allowUnsafeInlineStyles) {
$styleElemSources = array_unique(array_merge($styleElemSources, ["'unsafe-inline'"]));
}
$styleElemSources = array_unique(array_merge($styleSources, ["'unsafe-inline'"]));
$directives = [
'default-src' => ["'self'"],