diff --git a/backend/src/security_headers.rs b/backend/src/security_headers.rs index 7e061dc..3c7419f 100644 --- a/backend/src/security_headers.rs +++ b/backend/src/security_headers.rs @@ -23,7 +23,7 @@ impl Fairing for SecurityHeaders { )); response.set_header(Header::new( "Content-Security-Policy", - "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self'; font-src 'self' data:; connect-src 'self'; frame-ancestors 'none';", + "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self' data:; connect-src 'self'; frame-ancestors 'none';", )); response.set_header(Header::new( "Permissions-Policy",