-
Notifications
You must be signed in to change notification settings - Fork 6
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Mollie components & Content Security Policy #25
Comments
I would love to hear about this as well ... |
Two years later and still with same problem. |
@Veilleuse-00, I apologize for the (very) late reply. Do you mind trying to tweak the CSP policy / header into something similar to: |
I have tried your solution and it seems to work fine 👍 Thank you very much for your help @diogoosorio.! |
@Veilleuse-00 I'm trying to update the documentation around this. Do you mind sharing your complete |
@diogoosorio Yes, that's it.
And the CSP rules after correction that work fine :
|
Hi!
Mollie components have inline style that CSP doesn't allow, even if whitelisting "js.mollie.com" in it (also tried *.mollie.com).
Console message :
Refused to apply inline style because it violates the following Content Security Policy directive: "style-src 'self' js.mollie.com
Is there any way to work around this?
Thank you in advance.
The text was updated successfully, but these errors were encountered: