aboutsummaryrefslogtreecommitdiffhomepage
path: root/src
diff options
context:
space:
mode:
authorKevin J Hoerr <kjhoerr@protonmail.com>2023-12-24 08:33:30 +0000
committerKevin J Hoerr <kjhoerr@protonmail.com>2023-12-24 08:33:30 +0000
commit1371fab7c8ed305156da834db7ff17f6b9c5f117 (patch)
tree8de49719afb9521fee8940913245d4d88717d22e /src
parent4d132bffd174b1f54930bf137f6195e538b51558 (diff)
downloadsubmelon.dev-1371fab7c8ed305156da834db7ff17f6b9c5f117.tar.gz
submelon.dev-1371fab7c8ed305156da834db7ff17f6b9c5f117.tar.bz2
submelon.dev-1371fab7c8ed305156da834db7ff17f6b9c5f117.zip
Add CSP to block scripts and plugins
Diffstat (limited to 'src')
-rw-r--r--src/templates/layouts/page.njk1
1 files changed, 1 insertions, 0 deletions
diff --git a/src/templates/layouts/page.njk b/src/templates/layouts/page.njk
index adf9e7f..137b41b 100644
--- a/src/templates/layouts/page.njk
+++ b/src/templates/layouts/page.njk
@@ -10,6 +10,7 @@
<meta name="twitter:title" content="Kevin J Hoerr &lt;kjhoerr&#64;submelon.tech&gt;"/>
<meta name="twitter:creator" content="Kevin J Hoerr"/>
<meta name="twitter:card" content="summary"/>
+ <meta http-equiv="Content-Security-Policy" content="script-src 'none';object-src 'none';base-uri 'none';">
<meta name="generator" content="{{ eleventy.generator }}">
<link rel="stylesheet" href="/styles.css"/>
<link rel="icon" href="/favicon-32x32.png" type="image/png"/>