From 6c7ef74b557b8600e32cddef108f6af946e9de06 Mon Sep 17 00:00:00 2001 From: anoduck <9925396+anoduck@users.noreply.github.com> Date: Mon, 11 Aug 2025 18:19:28 -0400 Subject: fix: wip: revisions for hugo templating sys changes WIP: Revisions for fixing changes to hugo's templating system upgrade. BREAKING CHANGE: Will not build on versions of hugo prior to 0.145. --- config/_default/server.toml | 17 ++++++++++++----- 1 file changed, 12 insertions(+), 5 deletions(-) (limited to 'config/_default/server.toml') diff --git a/config/_default/server.toml b/config/_default/server.toml index e072c6c..eea66d3 100644 --- a/config/_default/server.toml +++ b/config/_default/server.toml @@ -7,14 +7,21 @@ for = '/**' Content-Security-Policy = """\ default-src 'self'; \ child-src 'self' app.netlify.com; \ - script-src 'unsafe-eval' 'unsafe-inline' 'self' *.netlify.app app.netlify.com netlify-cdp-loader.netlify.app https://*.google-analytics.com https://*.x.com https://*.twitter.com https://*.youtube.com https://*.flickr.com https://*.googletagmanager.com; \ - style-src 'unsafe-inline' 'self' *.netlify.app app.netlify.com netlify-cdp-loader.netlify.app https://*.knightlab.com https://fonts.googleapis.com https://www.youtube.com; \ + script-src 'unsafe-eval' 'unsafe-inline' 'self' *.hsforms.net *.hs-scripts.com *.google.com *.gstatic.com \ + *.netlify.app app.netlify.com netlify-cdp-loader.netlify.app https://*.google-analytics.com https://*.x.com \ + https://*.twitter.com https://*.youtube.com https://*.flickr.com https://*.googletagmanager.com; \ + style-src 'unsafe-inline' 'self' *.netlify.app app.netlify.com netlify-cdp-loader.netlify.app \ + https://*.knightlab.com https://fonts.googleapis.com https://www.youtube.com; \ object-src 'none'; \ base-uri 'self'; \ - connect-src 'self' https://*.google-analytics.com https://*.analytics.google.com https://*.googletagmanager.com https://*.knightlab.com; \ + connect-src 'self' https://*.google-analytics.com https://*.analytics.google.com \ + https://*.googletagmanager.com https://*.knightlab.com *.hsforms.com *.hubspot.com; \ font-src 'self' https://*.netlify.app https://fonts.gstatic.com; \ - frame-src 'self' https://www.youtube-nocookie.com https://www.youtube.com https://*.netlify.com https://*.google.com; \ - img-src 'self' data: https: https://*.netlify.app https://i.vimeocdn.com https://i.ytimg.com https://*.cloudinary.com https://*.google-analytics.com https://*.googletagmanager.com https://tile.openstreetmap.org; \ + frame-src 'self' https://www.youtube-nocookie.com https://www.youtube.com https://*.netlify.com \ + https://*.google.com *.google.com; \ + img-src 'self' data: https: https://*.netlify.app https://i.vimeocdn.com https://i.ytimg.com \ + https://*.cloudinary.com https://*.google-analytics.com https://*.googletagmanager.com \ + https://tile.openstreetmap.org *.hsforms.net *.hsforms.com; \ manifest-src 'self'; \ media-src 'self' https://*.netlify.app https://*.cloudinary.com https://*.youtube.com; \ """ -- cgit v1.2.3