Actions
Bug #25032
openUse Content-Security-Policy strict headers in utilities pages
Status:
Pending release
Priority:
N/A
Assignee:
Category:
Security
Target version:
Pull Request:
Severity:
Minor - inconvenience | misleading | easy workaround
UX impact:
User visibility:
Getting started - demo | first install | Technique editor and level 1 Techniques
Effort required:
Small
Priority:
0
Name check:
To do
Fix check:
To do
Regression:
No
Description
We have added the necessary boilerplate in #24015 to include HTML pages to be loaded with strict CSP headers, and applied it to the healtcheck page.
We now need to include these headers in other Utilities pages within Rudder : archives, event logs
Actions