Commit Graph

4 Commits

Author SHA1 Message Date
posimai 0bdded3e44 security(csp): unsafe-eval削除・connect-src絞り込み
unsafe-evalはAlpine.js不使用のため削除。
connect-srcをapi.soar-enrich.comのみに限定。

Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-04-23 00:07:09 +09:00
posimai 2a8bfb7306 fix(csp): style-src に posimai-ui.vercel.app を追加(base.css ブロック修正)
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-04-21 08:26:35 +09:00
posimai 64e2f479e9 security: add CSP and HSTS headers to vercel.json 2026-04-20 17:08:06 +09:00
posimai 1f296e39a7 feat(security): add vercel.json with security headers and sw.js cache control
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
2026-04-17 19:00:53 +09:00