• Resolved lowthian

    (@lowthian)


    Greetings, I love your plugin, I have contributed for your great work!
    On the sites that I updated today to 5.0.37, I am getting a warning in the search console:
    “The Content Security Policy directive ‘upgrade-insecure-requests’ is ignored when delivered in a report-only policy.”
    I checked a couple of sites that I have not upgraded yet and they are not seeing this error. Don’t know how important this is, but thought you should know.
    Happy to beta test anything.

    • This topic was modified 3 months, 3 weeks ago by lowthian.

    The page I need help with: [log in to see the link]

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Author Andrea Ferro

    (@unicorn03)

    hi @lowthian,

    I’m Andrea, thank you for your topic and I’m happy with these feedbacks to offer better and better assistance.

    I check your request, but I confirm that this does not compromise performance or safety.

    Thank you for contributing to the plugin and helping me ??

    Thread Starter lowthian

    (@lowthian)

    Thank you Andrea,

    I do like to keep console free of errors, I am finding this error showing on every site I update. If I simply remove ‘default-src ‘self’;’ from the CSP header this takes care of the error. Is this adding back a risk to the site?
    Thanks

    Plugin Author Andrea Ferro

    (@unicorn03)

    Hi @lowthian,

    I wanted to update you that I am finalizing version 5.0.38 with several fixes and updates. I ask you from the previous feedback had you fixed by removing ‘default-src ‘self;’ from the X-Content-Security-Policy header?

    As soon as I release the update I will let you know.


Viewing 3 replies - 1 through 3 (of 3 total)
  • You must be logged in to reply to this topic.