diff --git a/lib/Framework/Router.php b/lib/Framework/Router.php index a27e9b3..8b6a51a 100644 --- a/lib/Framework/Router.php +++ b/lib/Framework/Router.php @@ -39,6 +39,9 @@ class Router $response = $controllerObj->$action(...$method); if ($response instanceof Response) { + $response->headers->add([ + "Content-Security-Policy" => "default-src 'none'; font-src 'self'; style-src 'self'; script-src 'self'; img-src 'self'; require-trusted-types-for 'script'" + ]); return $response; } else { throw new InvalidArgumentException();