diff --git a/src/AnimeClient/Controller.php b/src/AnimeClient/Controller.php index f96318d8..ab109960 100644 --- a/src/AnimeClient/Controller.php +++ b/src/AnimeClient/Controller.php @@ -236,7 +236,7 @@ class Controller { $csp = [ "default-src 'self'", "object-src 'none'", - 'frame-src *.youtube.com', + "child-src 'self' *.youtube.com polyfill.io", ]; $view->addHeader('Content-Security-Policy', implode('; ', $csp));