diff --git a/backend/app.py b/backend/app.py index 260f163..724b910 100644 --- a/backend/app.py +++ b/backend/app.py @@ -67,7 +67,7 @@ class SecurityHeadersMiddleware(BaseHTTPMiddleware): response.headers["Content-Security-Policy"] = ( "default-src 'self'; " "script-src 'self' 'unsafe-inline' https://cdn.jsdelivr.net; " - "style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; " + "style-src 'self' 'unsafe-inline' https://fonts.googleapis.com https://cdn.jsdelivr.net; " "font-src 'self' https://fonts.gstatic.com; " "img-src 'self' data:; " "connect-src 'self' https://cdn.jsdelivr.net; " diff --git a/frontend/index.html b/frontend/index.html index 6589e66..154510a 100644 --- a/frontend/index.html +++ b/frontend/index.html @@ -55,6 +55,8 @@ + +
@@ -340,6 +342,28 @@ + + +