From 18599eb1473875454ef8cd19f223b4ee448ca762 Mon Sep 17 00:00:00 2001 From: Siddharth Sahay Date: Thu, 13 Jun 2024 17:35:39 +0300 Subject: [PATCH] add createContentSecurityPolicy --- app/entry.server.jsx | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app/entry.server.jsx b/app/entry.server.jsx index 1e58340c..4a4e0dea 100644 --- a/app/entry.server.jsx +++ b/app/entry.server.jsx @@ -15,7 +15,7 @@ export default async function handleRequest( responseHeaders, remixContext, ) { - const {nonce, header, NonceProvider} = createContentSecurityPolicy({scriptSrc: ["'self'", "https://connect.nosto.com", "nosto.js"], connectSrc: ["'self'", "https://connect.nosto.com"], defaultSrc: ["'self'", "https://connect.nosto.com", "nosto"]}); + const {nonce, header, NonceProvider} = createContentSecurityPolicy({scriptSrc: ["'self'", "https://connect.nosto.com", 'https://cdn.shopify.com'], connectSrc: ["'self'", "https://connect.nosto.com"], defaultSrc: ["'self'", "https://connect.nosto.com", 'https://cdn.shopify.com']}); const body = await renderToReadableStream(