From 5303e43d0afe6873c24b4f90772cc8e8a60e840a Mon Sep 17 00:00:00 2001 From: Simon Erkelens Date: Fri, 30 Jun 2023 11:07:30 +1200 Subject: [PATCH] default self should always be true --- src/Helpers/CSPConvertor.php | 1 + 1 file changed, 1 insertion(+) diff --git a/src/Helpers/CSPConvertor.php b/src/Helpers/CSPConvertor.php index 86d9a39..1b5a9e9 100644 --- a/src/Helpers/CSPConvertor.php +++ b/src/Helpers/CSPConvertor.php @@ -96,6 +96,7 @@ public static function toYml($response, $return = false) rsort($parts); $arrayHeader[$key]['allow'] = $parts; } + $arrayHeader['default-src']['self'] = true; // Always allow self $data = [ CSPBackend::class => [ 'csp_config' => $arrayHeader