diff --git a/app/Core/Http/Response.php b/app/Core/Http/Response.php index fdd7d9943..7fefddeb3 100644 --- a/app/Core/Http/Response.php +++ b/app/Core/Http/Response.php @@ -220,7 +220,6 @@ class Response extends Base */ public function csp(array $policies = array()) { - $policies['default-src'] = "'self'"; $values = ''; foreach ($policies as $policy => $acl) { diff --git a/app/ServiceProvider/ClassProvider.php b/app/ServiceProvider/ClassProvider.php index c56c9259c..df4e183b8 100644 --- a/app/ServiceProvider/ClassProvider.php +++ b/app/ServiceProvider/ClassProvider.php @@ -168,6 +168,7 @@ class ClassProvider implements ServiceProviderInterface }; $container['cspRules'] = array( + 'default-src' => "'self'", 'style-src' => "'self' 'unsafe-inline'", 'img-src' => '* data:', );