Skip to content

The Content-Security-Policy header must not be overridden #35845

@sebbASF

Description

@sebbASF

Bug description

https://github.com/apache/superset-site/blob/663d02559ee97830125b4a2f5c8249557c6c4b68/.htaccess#L25

The Content-Security-Policy header must not be overridden.

There is now a standard way to add local exceptions to the CSP:

https://infra.apache.org/tools/csp.html

Please update the .htaccess file accordingly.

Metadata

Metadata

Labels

No labels
No labels

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions