From ec256df0f7cfeee5274d60be650bd847144abd99 Mon Sep 17 00:00:00 2001 From: Ma <101021254+CodeWithMa@users.noreply.github.com> Date: Thu, 2 Apr 2026 16:54:23 +0200 Subject: [PATCH] Add secure CSP configuration --- src-tauri/tauri.conf.json | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/src-tauri/tauri.conf.json b/src-tauri/tauri.conf.json index c5dbeb3..ab69c50 100644 --- a/src-tauri/tauri.conf.json +++ b/src-tauri/tauri.conf.json @@ -20,7 +20,14 @@ } ], "security": { - "csp": null + "csp": { + "default-src": "'self' customprotocol: asset:", + "connect-src": "ipc: http://ipc.localhost", + "img-src": "'self' asset: http://asset.localhost blob: data:", + "style-src": "'unsafe-inline' 'self'", + "script-src": "'self'", + "font-src": "'self'" + } } }, "bundle": {