From b18020518b78d361324c94de5205ca45eb7617b7 Mon Sep 17 00:00:00 2001 From: Michael Q Larson Date: Mon, 22 Dec 2014 15:45:03 -0800 Subject: [PATCH] another attempt at fixing rafflecopter --- app.js | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/app.js b/app.js index 495548c5106..4ebd939c4fa 100644 --- a/app.js +++ b/app.js @@ -120,7 +120,8 @@ debug(trusted); app.use(helmet.contentSecurityPolicy({ defaultSrc: trusted, scriptSrc: ['*.optimizely.com'].concat(trusted), - 'connect-src': process.env.NODE_ENV === 'development' ? ['ws://localhost:3001/', 'http://localhost:3001/'] : ["ws://api.rafflecopter.com", "ws://www.freecodecamp.com"], + 'connect-src': process.env.NODE_ENV === 'development' ? ['ws://localhost:3001/', 'http://localhost:3001/'] : [], + connectSources: ["ws://api.rafflecopter.com", "ws://www.freecodecamp.com"], styleSrc: trusted, imgSrc: ['*.evernote.com', '*.amazonaws.com', "data:", '*.licdn.com'].concat(trusted), fontSrc: ["'self", '*.googleapis.com'].concat(trusted),