From 34aee4d897313cb4e8667b5d8a6c0a96d98db4fc Mon Sep 17 00:00:00 2001 From: Elizabeth Hunt Date: Thu, 1 Jan 2026 18:50:04 -0800 Subject: Fix CSP Headers and deployment --- package-lock.json | 11 ----------- package.json | 1 - svelte.config.js | 7 +++++-- 3 files changed, 5 insertions(+), 14 deletions(-) diff --git a/package-lock.json b/package-lock.json index 0f4d91b..14bbb51 100644 --- a/package-lock.json +++ b/package-lock.json @@ -15,7 +15,6 @@ }, "devDependencies": { "@eslint/js": "^9.39.2", - "@sveltejs/adapter-auto": "^7.0.0", "@sveltejs/adapter-node": "^5.4.0", "@sveltejs/kit": "^2.49.2", "@sveltejs/vite-plugin-svelte": "^5.0.3", @@ -2538,16 +2537,6 @@ "acorn": "^8.9.0" } }, - "node_modules/@sveltejs/adapter-auto": { - "version": "7.0.0", - "resolved": "https://registry.npmjs.org/@sveltejs/adapter-auto/-/adapter-auto-7.0.0.tgz", - "integrity": "sha512-ImDWaErTOCkRS4Gt+5gZuymKFBobnhChXUZ9lhUZLahUgvA4OOvRzi3sahzYgbxGj5nkA6OV0GAW378+dl/gyw==", - "dev": true, - "license": "MIT", - "peerDependencies": { - "@sveltejs/kit": "^2.0.0" - } - }, "node_modules/@sveltejs/adapter-node": { "version": "5.4.0", "resolved": "https://registry.npmjs.org/@sveltejs/adapter-node/-/adapter-node-5.4.0.tgz", diff --git a/package.json b/package.json index d614ed8..b64c39a 100644 --- a/package.json +++ b/package.json @@ -13,7 +13,6 @@ }, "devDependencies": { "@eslint/js": "^9.39.2", - "@sveltejs/adapter-auto": "^7.0.0", "@sveltejs/adapter-node": "^5.4.0", "@sveltejs/kit": "^2.49.2", "@sveltejs/vite-plugin-svelte": "^5.0.3", diff --git a/svelte.config.js b/svelte.config.js index efa0e4b..f973307 100644 --- a/svelte.config.js +++ b/svelte.config.js @@ -8,12 +8,15 @@ const config = { kit: { adapter: adapter(), + paths: { + base: '' + }, csp: { - mode: 'auto', + mode: 'nonce', directives: { 'script-src': ['self', 'https://hcaptcha.com', 'https://*.hcaptcha.com'], 'frame-src': ['self', 'https://hcaptcha.com', 'https://*.hcaptcha.com'], - 'style-src': ['self', 'https://hcaptcha.com', 'https://*.hcaptcha.com'], + 'style-src': ['self', 'https://hcaptcha.com', 'https://*.hcaptcha.com', 'unsafe-inline'], 'connect-src': ['self', 'https://hcaptcha.com', 'https://*.hcaptcha.com'] } } -- cgit v1.2.3-70-g09d2