-
Notifications
You must be signed in to change notification settings - Fork 88
Expand file tree
/
Copy pathscriptUrls.js
More file actions
122 lines (118 loc) · 3.25 KB
/
scriptUrls.js
File metadata and controls
122 lines (118 loc) · 3.25 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
const API_URL =
process.env.NODE_ENV === 'development'
? 'http://localhost:35001'
: `https://${new URL(process.env.NEXT_PUBLIC_API_URL || 'http://localhost:35001').hostname}`;
const scriptSrcUrls = [
API_URL,
'https://*.google-analytics.com',
'https://identitytoolkit.googleapis.com',
'https://*.hotjar.com',
'https://*.storyblok.com',
'https://*.newrelic.com',
'https://*.nr-data.net',
'https://*.crisp.chat',
'https://*.googletagmanager.com',
'https://vercel.live',
'https://*.noembed.com',
'https://*.youtube.com',
'https://www.youtube.com',
'https://*.googleapis.com',
'https://noembed.com',
'https://www.youtube.com',
'https://i.ytimg.com',
'https://*.hotjar.io',
'https://*.rollbar.com',
'https://*.simplybook.it',
'https://widget.simplybook.it',
'https://*.zapier.com',
'https://fonts.googleapis.com',
'https://static.hotjar.com',
'https://app.storyblok.com',
'https://client.crisp.chat',
'wss://client.relay.crisp.chat',
'https://apis.google.com',
'https://va.vercel-scripts.com/',
'https://www.google.com/recaptcha/',
'https://www.gstatic.com/recaptcha/',
];
const childSrcUrls = ['blob:'];
const workerSrcUrls = ['blob:', 'https://*.youtube.com'];
const styleSrcUrls = [
'https://fonts.googleapis.com',
'https://static.hotjar.com',
'https://app.storyblok.com',
'https://client.crisp.chat',
'https://*.google-analytics.com',
];
const fontSrcUrls = [
'https://fonts.gstatic.com',
'https://*.hotjar.com',
'https://*.crisp.chat',
'https://*.youtube.com',
];
const imgSrcUrls = [
'https://*.hotjar.com',
'https://*.storyblok.com',
'https://*.crisp.chat',
'https://*.googletagmanager.com',
'https://i.ytimg.com',
'https://cdnjs.cloudflare.com/',
];
const connectSrcUrls = [
API_URL,
'https://*.hotjar.com',
'https://*.hotjar.io',
'wss://ws.hotjar.com',
'https://*.googletagmanager.com',
'https://*.googleapis.com',
'https://*.google-analytics.com',
'https://identitytoolkit.googleapis.com',
'https://*.storyblok.com',
'https://*.rollbar.com',
'https://*.simplybook.it',
'https://*.zapier.com',
'https://*.nr-data.net',
'wss://client.relay.crisp.chat',
'https://*.crisp.chat',
'https://*.noembed.com',
'https://noembed.com',
'https://*.youtube.com',
'https://www.youtube.com',
'https://i.ytimg.com',
'https://vercel.live',
'https://cdnjs.cloudflare.com/ajax/libs/twemoji/',
'https://www.google.com/recaptcha/',
'https://www.gstatic.com/recaptcha/',
];
const frameSrcUrls = [
'https://*.hotjar.com',
'https://*.storyblok.com',
'https://*.crisp.chat',
'https://*.simplybook.it',
'https://*.youtube.com',
'https://www.youtube-nocookie.com/',
'https://vercel.live',
'https://*.firebaseapp.com',
'https://www.google.com/recaptcha/',
'https://www.gstatic.com/recaptcha/',
];
const mediaSrcUrls = ['https://*.storyblok.com', 'https://a.storyblok.com'];
const objectSrcUrls = ['none'];
const baseUriUrls = ['self'];
const formActionUrls = ['self'];
const frameAncestorsUrls = ["'self'", 'https://app.storyblok.com'];
module.exports = {
scriptSrcUrls,
childSrcUrls,
workerSrcUrls,
styleSrcUrls,
fontSrcUrls,
imgSrcUrls,
connectSrcUrls,
frameSrcUrls,
mediaSrcUrls,
objectSrcUrls,
baseUriUrls,
formActionUrls,
frameAncestorsUrls,
};