Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Removed unsafe-inline from extension CSP #2359

Merged
merged 1 commit into from
Dec 8, 2023

Conversation

imolorhe
Copy link
Collaborator

@imolorhe imolorhe commented Dec 8, 2023

Mozilla ignores the CSP of the extension if it contains unsafe-inline, and it doesn't show any warnings either making this difficult to spot. I've verified that the pre request script still works without unsafe-inline.

Fixes

#2358

Checks

  • Ran yarn test-build
  • Updated relevant documentations
  • Updated matching config options in altair-static

Changes proposed in this pull request:

Copy link

github-actions bot commented Dec 8, 2023

Visit the preview URL for this PR (updated for commit 26a1a27):

https://altair-gql--pr2359-imolorhe-remove-unsa-uw9eniuk.web.app

(expires Fri, 15 Dec 2023 11:10:28 GMT)

🔥 via Firebase Hosting GitHub Action 🌎

Sign: 02d6323d75a99e532a38922862e269d63351a6cf

@imolorhe imolorhe added this pull request to the merge queue Dec 8, 2023
Merged via the queue into master with commit 72d1a55 Dec 8, 2023
10 of 13 checks passed
@imolorhe imolorhe deleted the imolorhe/remove-unsafe-inline-csp-extension branch December 8, 2023 14:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant