directives: child-src: - '''self''' connect-src: - '''self''' - 'blob:' - 'https://raw.githubusercontent.com/opencloud-eu/awesome-apps' - 'https://update.opencloud.eu' - 'https://{{ services['authelia']['domain'] }}.{{ domain['public'] }}' # default-src: # - '''none''' font-src: - '''self''' frame-ancestors: - '''self''' frame-src: - '''self''' - 'blob:' img-src: - '''self''' - 'data:' - 'blob:' manifest-src: - '''self''' media-src: - '''self''' # object-src: # - '''none''' script-src: - '''self''' - '''unsafe-inline''' - '''unsafe-eval''' style-src: - '''self''' - '''unsafe-inline''' worker-src: - '''self''' - 'blob:'