diff --git a/src/router/layers.rs b/src/router/layers.rs index ea872984..38d4ca97 100644 --- a/src/router/layers.rs +++ b/src/router/layers.rs @@ -21,8 +21,8 @@ use tracing::Level; use crate::{request, router}; -const CONDUWUIT_CSP: &str = - "sandbox; default-src 'none'; font-src 'none'; script-src 'none'; frame-ancestors 'none'; base-uri 'none';"; +const CONDUWUIT_CSP: &str = "sandbox; default-src 'none'; font-src 'none'; script-src 'none'; frame-ancestors 'none'; \ + form-action 'none'; base-uri 'none';"; const CONDUWUIT_PERMISSIONS_POLICY: &str = "interest-cohort=(),browsing-topics=()"; pub(crate) fn build(server: &Arc) -> io::Result> {