diff --git a/website/settings.py b/website/settings.py index 16af799..6adcea2 100644 --- a/website/settings.py +++ b/website/settings.py @@ -412,6 +412,9 @@ PERMISSIONS_POLICY: dict[str, list] = { "usb": [], } +# Disable default CSP which blocks all remote content +CSP_DEFAULT_SRC = None + if not DEBUG: SECURE_HSTS_SECONDS = 2592000 # 30 days