From d168aa6362c812401847b84196e8d69823b4a11e Mon Sep 17 00:00:00 2001
From: Vika <vika@fireburn.ru>
Date: Wed, 16 Apr 2025 03:30:10 +0300
Subject: Add font-src directive to Content-Security-Policy to fix fonts

Change-Id: I42a97a5a782174995b815b9d822250c594fb26a0
---
 src/lib.rs | 1 +
 1 file changed, 1 insertion(+)

(limited to 'src')

diff --git a/src/lib.rs b/src/lib.rs
index a52db4c..b12bdfc 100644
--- a/src/lib.rs
+++ b/src/lib.rs
@@ -380,6 +380,7 @@ where
                 "form-action 'self';", // Only allow sending forms back to us.
                 "media-src 'self';",   // Only allow embedding media from us.
                 "script-src 'self';",  // Only run scripts we serve.
+                "font-src 'self';",    // Only use fonts we serve.
                 "style-src 'self';",   // Only use styles we serve.
                 "base-uri 'none';",    // Do not allow to change the base URI.
                 "object-src 'none';",  // Do not allow to embed objects (Flash/ActiveX).
-- 
cgit 1.4.1