From c80ac49c59c36280be1faa7a9ddfaa67e68401a9 Mon Sep 17 00:00:00 2001 From: j4y <36337+j4y@users.noreply.github.com> Date: Fri, 26 Dec 2025 12:21:10 -0500 Subject: [PATCH] Revert "feat(csp): add CloudFront response headers policy with Content-Security-Policy" This reverts commit 83d546e39e5ccdec8109c4fb9d16255671f5397c. --- terraform/website/main.tf | 11 ----------- 1 file changed, 11 deletions(-) diff --git a/terraform/website/main.tf b/terraform/website/main.tf index 311e1ba..f886b42 100644 --- a/terraform/website/main.tf +++ b/terraform/website/main.tf @@ -90,17 +90,6 @@ resource "aws_s3_bucket_website_configuration" "bucket" { ]) } -resource "aws_cloudfront_response_headers_policy" "csp" { - name = "colorcop-csp-policy" - - security_headers_config { - content_security_policy { - override = true - content_security_policy = "default-src 'self'; script-src 'self' 'unsafe-eval' https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net https://cdnjs.cloudflare.com; style-src 'self' https://cdnjs.cloudflare.com 'unsafe-inline'; img-src 'self' data: https://pagead2.googlesyndication.com https://googleads.g.doubleclick.net;" - } - } -} - resource "aws_cloudfront_distribution" "distribution" { aliases = [local.www_domain, var.domain] comment = "Cloudfront distribution for ${var.domain}"