From 31ddfab0b69d3e5246bd54bac936a787d9c3b421 Mon Sep 17 00:00:00 2001 From: Nevo David Date: Fri, 16 May 2025 15:23:35 +0700 Subject: [PATCH] feat: remove csp --- apps/frontend/next.config.js | 26 -------------------------- 1 file changed, 26 deletions(-) diff --git a/apps/frontend/next.config.js b/apps/frontend/next.config.js index 0d5e235e..8244048e 100644 --- a/apps/frontend/next.config.js +++ b/apps/frontend/next.config.js @@ -1,18 +1,5 @@ // @ts-check -const cspHeader = ` -default-src 'self' chrome-extension:; -script-src 'self' 'unsafe-eval' 'unsafe-inline' chrome-extension:; -style-src 'self' 'unsafe-inline' chrome-extension:; -img-src 'self' blob: data: chrome-extension:; -font-src 'self' chrome-extension:; -object-src 'none'; -base-uri 'self'; -form-action 'self'; -frame-src 'self' chrome-extension: https:; -upgrade-insecure-requests; -`; - /** @type {import('next').NextConfig} */ const nextConfig = { experimental: { @@ -32,19 +19,6 @@ const nextConfig = { }, ], }, - async headers() { - return [ - { - source: '/(.*)', - headers: [ - { - key: 'Content-Security-Policy', - value: cspHeader.replace(/\n/g, ''), - }, - ], - }, - ]; - }, async redirects() { return [ {