How to edit Content-Security-Policy in v2.6.1?


As per title, how can I edit Content-Security-Policy in v2.6.1? To be specific, I would like to allow Google font under style-src.

I import Google font “Rubik” in custom.scss. But browser console shows this CSP error:

Content Security Policy: The page’s settings blocked the loading of a resource at,700&subset=cyrillic,hebrew,latin-ext (“style-src”).

Any help is much appreciated. Thank you!

1 Like

You may need to edit your config/initializers/content_security_policy.rb file where the content security policy got intruduced by the pull request: