openhands
c7fb37356e
fix: remove nonce from style-src to allow unsafe-inline to work
2026-08-01 22:09:22 +02:00
openhands
95b1955218
fix: allow unsafe-inline for styles to fix CSP permanently
2026-08-01 21:58:13 +02:00
openhands
0dc16e832d
fix: add additional CSP hashes for inline styles
2026-08-01 21:51:32 +02:00
openhands
59f03827bc
fix: add CSP hashes for inline styles from Google Fonts/Tailwind
2026-08-01 21:46:00 +02:00
openhands
0d6032d444
chore: remove standalone output mode, fix Sentry DSN validation, add dev CSP unsafe-inline for styles
...
- Remove output: 'standalone' from next.config.ts to allow normal 'next start'
- Allow empty SENTRY_DSN/NEXT_PUBLIC_SENTRY_DSN in env validation (zod)
- Add 'unsafe-inline' to style-src CSP only in development for Turbopack HMR
- Clear placeholder Sentry DSN values from .env
2026-08-01 21:30:51 +02:00
Simo and Cursor
2ff08e5127
chore: patch deps, CSP style nonces, otplib 13, and PR CI
...
Co-authored-by: Cursor <[email protected] >
2026-07-21 20:46:02 +02:00
Simo and Cursor
9b47668fe9
chore: CSP script nonces, deploy health check, dead-code cleanup
...
Add per-request CSP nonces (drop script unsafe-inline), post-deploy /api/health gate, bump next-auth to beta.32, and remove unused motion/cache/permission helpers.
Co-authored-by: Cursor <[email protected] >
2026-07-21 20:27:08 +02:00