diff --git a/services/web/app/src/infrastructure/CSP.js b/services/web/app/src/infrastructure/CSP.js index 171d45e52a..eac931700e 100644 --- a/services/web/app/src/infrastructure/CSP.js +++ b/services/web/app/src/infrastructure/CSP.js @@ -24,7 +24,7 @@ module.exports = function({ res.locals.scriptNonce = scriptNonce const directives = [ - `script-src 'nonce-${scriptNonce}' 'unsafe-inline' 'strict-dynamic' https:`, + `script-src 'nonce-${scriptNonce}' 'unsafe-inline' 'strict-dynamic' https: 'report-sample'`, `object-src 'none'`, `base-uri 'none'` ]