From 73be8c999ea2b6ecf4c489185e62462ed3ca5e06 Mon Sep 17 00:00:00 2001 From: Henk Verlinde Date: Wed, 15 Apr 2020 20:17:05 +0200 Subject: [PATCH] Update CSP+ --- layouts/index.headers | 2 +- netlify.toml | 4 ++-- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/layouts/index.headers b/layouts/index.headers index 6af401e..385e241 100644 --- a/layouts/index.headers +++ b/layouts/index.headers @@ -2,7 +2,7 @@ Strict-Transport-Security: max-age=31536000; includeSubDomains; preload X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block - Content-Security-Policy: default-src 'none'; img-src 'self' data:; script-src 'self' 'unsafe-eval'; style-src 'self' + Content-Security-Policy: default-src 'self'; img-src 'self' data:; script-src 'self'; style-src 'self' X-Frame-Options: SAMEORIGIN Referrer-Policy: strict-origin Feature-Policy: geolocation 'self' diff --git a/netlify.toml b/netlify.toml index 14cadef..5dfdaa0 100644 --- a/netlify.toml +++ b/netlify.toml @@ -4,10 +4,10 @@ functions = "functions/" [build.environment] - HUGO_VERSION = "0.68.3" + HUGO_VERSION = "0.69.0" NODE_VERSION = "13.11.0" NPM_VERSION = "6.13.7" - YARN_VERSION = "1.22.0" + YARN_VERSION = "1.22.4" [context.deploy-preview] command = "yarn build:preview"