diff --git a/internal/api/mw_security.go b/internal/api/mw_security.go index b0a5cab..312d524 100644 --- a/internal/api/mw_security.go +++ b/internal/api/mw_security.go @@ -49,7 +49,7 @@ func SecurityHeaders(next http.Handler) http.Handler { "default-src 'self'", "base-uri 'self'", "form-action 'self'", - "script-src 'self'", + "script-src 'self' 'unsafe-inline'", "style-src 'self' 'unsafe-inline' https://fonts.googleapis.com", "img-src 'self' data: blob:", "font-src 'self' data: https://fonts.gstatic.com",