From eacf819caf4b1b4d60f8ead6138c9836e27a03df Mon Sep 17 00:00:00 2001 From: Ryan Petrello Date: Wed, 26 Jun 2019 10:02:36 -0400 Subject: [PATCH] add a reasonable default Content Security Policy ideally we'd improve this over time to remove the `unsafe-inline` lines, but we can't due that today because Angular1 makes use of a lot of inline