add nonce to pricing-table.js
This commit is contained in:
parent
d6c4ec21ae
commit
7fe7be7ef8
12
plugin.rb
12
plugin.rb
|
@ -21,11 +21,17 @@ register_svg_icon "far-credit-card" if respond_to?(:register_svg_icon)
|
|||
register_html_builder("server:before-head-close") do |controller|
|
||||
"<script src='https://js.stripe.com/v3/' nonce='#{controller.helpers.csp_nonce_placeholder}'></script>"
|
||||
end
|
||||
register_html_builder("server:before-head-close") do
|
||||
'<script async src="https://js.stripe.com/v3/pricing-table.js"></script>'
|
||||
register_html_builder("server:before-head-close") do |controller|
|
||||
"<script async src='https://js.stripe.com/v3/pricing-table.js' nonce='#{controller.helpers.csp_nonce_placeholder}'></script>"
|
||||
end
|
||||
|
||||
extend_content_security_policy(script_src: %w[https://js.stripe.com/v3/ https://hooks.stripe.com https://js.stripe.com/v3/pricing-table.js])
|
||||
extend_content_security_policy(
|
||||
script_src: %w[
|
||||
https://js.stripe.com/v3/
|
||||
https://hooks.stripe.com
|
||||
https://js.stripe.com/v3/pricing-table.js
|
||||
],
|
||||
)
|
||||
|
||||
add_admin_route "discourse_subscriptions.admin_navigation", "discourse-subscriptions.plans"
|
||||
|
||||
|
|
Loading…
Reference in New Issue