diff --git a/src/morphodict/site/securemiddleware.py b/src/morphodict/site/securemiddleware.py index 719742d7f..e3e0b7463 100644 --- a/src/morphodict/site/securemiddleware.py +++ b/src/morphodict/site/securemiddleware.py @@ -13,12 +13,13 @@ csp = ( ContentSecurityPolicy() - .default_src("'self'") - .script_src("'self'", "cdn.example.com") + .default_src("'self'", "speech-db.altlab.app") + .script_src("'self'") .style_src("'self'", "fonts.googleapis.com", "'unsafe-inline'") .img_src("'self'") .connect_src("'self'", "speech-db.altlab.app") .font_src("'self'", "fonts.gstatic.com", "fonts.googleapis.com") + .media_src("'self'", "http://speech-db.altlab.app", "https://speech-db.altlab.app") ) secure_headers = Secure(csp=csp)