umts / incidents

Operator incident report tracking for the Springfield and Valley Area Transit Companies
MIT License
1 stars 1 forks source link

Update content security policy #336

Closed sherson closed 2 years ago

sherson commented 2 years ago

This error shows up in the JavaScript console:

Refused to connect to 'https://maps.googleapis.com/maps/api/mapsjs/gen_204?csp_test=true' because it violates the following Content Security Policy directive: "default-src 'self'". Note that 'connect-src' was not explicitly set, so 'default-src' is used as a fallback.

https://github.com/umts/incidents/blob/master/config/initializers/content_security_policy.rb