From 4468f65dd86bead162ab5f4a39d1b853a0c55214 Mon Sep 17 00:00:00 2001 From: Thibaut Courouble Date: Sun, 1 May 2016 14:05:27 -0400 Subject: [PATCH] Add content security policy --- assets/javascripts/views/pages/jquery.coffee | 2 +- lib/app.rb | 6 ++++++ public/opensearch.xml | 4 ++-- views/app.erb | 4 ++-- views/index.erb | 20 ++++++++++---------- views/other.erb | 4 ++-- 6 files changed, 23 insertions(+), 17 deletions(-) diff --git a/assets/javascripts/views/pages/jquery.coffee b/assets/javascripts/views/pages/jquery.coffee index ff2a0955..723a13f4 100644 --- a/assets/javascripts/views/pages/jquery.coffee +++ b/assets/javascripts/views/pages/jquery.coffee @@ -44,7 +44,7 @@ class app.views.JqueryPage extends app.views.BasePage return fixIframeSource: (source) -> - source = source.replace '"/resources/', '"http://api.jquery.com/resources/' # attr(), keydown() + source = source.replace '"/resources/', '"https://api.jquery.com/resources/' # attr(), keydown() source.replace '', """