diff --git a/config/nginx.conf.template b/config/nginx.conf.template
index c5667a5..6120092 100644
--- a/config/nginx.conf.template
+++ b/config/nginx.conf.template
@@ -57,7 +57,7 @@ server {
index index.html;
expires -1;
- add_header Content-Security-Policy "frame-ancestors 'none'; default-src 'self'; connect-src 'self' https; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:;";
+ add_header Content-Security-Policy "frame-ancestors 'none'; default-src 'self'; connect-src 'self' https:; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:;";
# Media: images, icons, video, audio, HTC
location ~* \.(?:jpg|jpeg|gif|png|ico|cur|gz|svg|svgz|mp4|mp3|ogg|ogv|webm|htc|woff2|woff|ttf)$ {
diff --git a/html/index.html b/html/index.html
index 67e8278..f023838 100644
--- a/html/index.html
+++ b/html/index.html
@@ -5,7 +5,7 @@
+ content="default-src 'self'; connect-src 'self' https:; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:"/>