Content-Security-Policy: allow images from data: URLs#772
Content-Security-Policy: allow images from data: URLs#772alxndrsn merged 1 commit intogetodk:nextfrom
Conversation
QR displayed in odk-central-frontend are displayed with src=data:... Closes getodk#629
|
Tagging @lognaturel, since I think she reviewed the original CSP. |
lognaturel
left a comment
There was a problem hiding this comment.
We need * for arbitrary images embedded in markdown descriptions and data for the QR codes.
|
Changed the base to |
I think it would be helpful to add this as a comment, but commenting every one of these rules would get out of hand quite quickly 🤔 |
|
I think what you've done with the commit message is great! If we have questions we can use git to see what was going on. I always try to leave a note of what I think about when I do a review also for archaeology purposes. |
QR displayed in odk-central-frontend are displayed with src=data:... Closes getodk#629
QR displayed in odk-central-frontend are displayed with src=data:...
Closes #629