csp: allow framing twitter gifs (closes #5185)

pull/5195/head
Niklas Fiekas 2019-06-12 16:25:21 +02:00
parent d41069412e
commit 697f8491af
1 changed files with 1 additions and 1 deletions

View File

@ -50,7 +50,7 @@ case class ContentSecurityPolicy(
def withTwitter = copy(
scriptSrc = "https://platform.twitter.com" :: "https://*.twimg.com" :: scriptSrc,
frameSrc = "https://platform.twitter.com" :: frameSrc,
frameSrc = "https://twitter.com" :: "https://platform.twitter.com" :: frameSrc,
styleSrc = "https://platform.twitter.com" :: styleSrc
)