estum / growlyflash

Growl-styled flash messages for Ruby on Rails and Bootstrap
MIT License
58 stars 34 forks source link

Content-Security-Policy: script-src: 'unsafe-inline' compliant #42

Closed klacointe closed 6 years ago

klacointe commented 6 years ago

Don't inject javascript code into html page to be compliant with Content-Security-Policy script-src: 'unsafe-inline' header.

https://developer.mozilla.org/fr/docs/Web/HTTP/Headers/Content-Security-Policy/script-src