mirror of
https://github.com/versia-pub/server.git
synced 2025-12-06 16:38:19 +01:00
fix(api): 🐛 Disable CSP upgrade-insecure-requests when using Tor
This commit is contained in:
parent
ae3d5813cf
commit
75992dfe62
10
index.ts
10
index.ts
|
|
@ -123,6 +123,16 @@ app.all("*", async (context) => {
|
|||
);
|
||||
}
|
||||
|
||||
// Disable CSP upgrade-insecure-requests if an .onion domain is used
|
||||
if (new URL(context.req.url).hostname.endsWith(".onion")) {
|
||||
proxy.headers.set(
|
||||
"Content-Security-Policy",
|
||||
proxy.headers
|
||||
.get("Content-Security-Policy")
|
||||
?.replace("upgrade-insecure-requests;", "") ?? "",
|
||||
);
|
||||
}
|
||||
|
||||
return proxy;
|
||||
});
|
||||
|
||||
|
|
|
|||
Loading…
Reference in a new issue