diff options
author | David Heinemeier Hansson <david@loudthinking.com> | 2018-01-12 15:07:17 +0100 |
---|---|---|
committer | David Heinemeier Hansson <david@loudthinking.com> | 2018-01-12 15:07:32 +0100 |
commit | 4697b19b889e4416d46cdaebcecc8ea95d9eea30 (patch) | |
tree | 9c5027d69843abbba5a4c1906f950fb28c4cd807 | |
parent | 3387676efdd03fd6e5b9a70b215ce02cdb1d4ee1 (diff) | |
download | rails-4697b19b889e4416d46cdaebcecc8ea95d9eea30.tar.gz rails-4697b19b889e4416d46cdaebcecc8ea95d9eea30.tar.bz2 rails-4697b19b889e4416d46cdaebcecc8ea95d9eea30.zip |
Use complete variable names rather than single-letter abbreviations for style
-rw-r--r-- | railties/lib/rails/generators/rails/app/templates/config/initializers/content_security_policy.rb.tt | 16 |
1 files changed, 8 insertions, 8 deletions
diff --git a/railties/lib/rails/generators/rails/app/templates/config/initializers/content_security_policy.rb.tt b/railties/lib/rails/generators/rails/app/templates/config/initializers/content_security_policy.rb.tt index 656ded4069..d566c734c8 100644 --- a/railties/lib/rails/generators/rails/app/templates/config/initializers/content_security_policy.rb.tt +++ b/railties/lib/rails/generators/rails/app/templates/config/initializers/content_security_policy.rb.tt @@ -2,16 +2,16 @@ # For further information see the following documentation # https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Content-Security-Policy -Rails.application.config.content_security_policy do |p| - p.default_src :self, :https - p.font_src :self, :https, :data - p.img_src :self, :https, :data - p.object_src :none - p.script_src :self, :https - p.style_src :self, :https, :unsafe_inline +Rails.application.config.content_security_policy do |policy| + policy.default_src :self, :https + policy.font_src :self, :https, :data + policy.img_src :self, :https, :data + policy.object_src :none + policy.script_src :self, :https + policy.style_src :self, :https, :unsafe_inline # Specify URI for violation reports - # p.report_uri "/csp-violation-report-endpoint" + # policy.report_uri "/csp-violation-report-endpoint" end # Report CSP violations to a specified URI |