diff --git a/app/Http/Middleware/SecurityHeaders.php b/app/Http/Middleware/SecurityHeaders.php index e5b9f88..618fc67 100644 --- a/app/Http/Middleware/SecurityHeaders.php +++ b/app/Http/Middleware/SecurityHeaders.php @@ -31,9 +31,9 @@ public function handle($request, Closure $next) if (app()->environment(['production', 'development'])) { $response->headers->add( [ - 'Content-Security-Policy' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com polyfill.io maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com;", - 'X-Content-Security-Policy' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com polyfill.io maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com", - 'X-WebKit-CSP' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com helpforhealth.local impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com polyfill.io maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com" + 'Content-Security-Policy' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com;", + 'X-Content-Security-Policy' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com", + 'X-WebKit-CSP' => "default-src fonts.googleapis.com *.amazonaws.com *.google.com www.googletagmanager.com www.google-analytics.com helpforhealth.local impreunapentrusanatate.ro dev.impreunapentrusanatate.ro; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.google.com www.googletagmanager.com *.google-analytics.com www.gstatic.com maps.googleapis.com cdn.jsdelivr.net cdn.tiny.cloud cdnjs.cloudflare.com; object-src 'none'; style-src 'self' 'unsafe-inline' fonts.googleapis.com cdnjs.cloudflare.com cdn.tiny.cloud; img-src 'self' data: *.amazonaws.com maps.googleapis.com maps.gstatic.com sp.tinymce.com *.google-analytics.com; frame-src 'self' *.google.com www.googletagmanager.com www.google-analytics.com; font-src 'self' fonts.googleapis.com fonts.gstatic.com" ] ); } diff --git a/resources/views/frontend/clinic-details.blade.php b/resources/views/frontend/clinic-details.blade.php index d7a9ac9..7e9828d 100644 --- a/resources/views/frontend/clinic-details.blade.php +++ b/resources/views/frontend/clinic-details.blade.php @@ -161,7 +161,7 @@ @endsection @section('head-scripts') - +