Configuring Content Security Policies (CSP) for Released Embeds
To embed Released into your app while maintaining a secure Content Security Policy (CSP), you may need to adjust your existing policy to allow certain domains used by Released.
Overview
CSP Configuration
Strictest CSP Policy
Content-Security-Policy:
connect-src https://api.released.so https://events.released.so;
script-src https://embed.released.so;
style-src 'unsafe-inline' https://cdn.released.so https://embed.released.so;
img-src https://cdn.released.so https://dwamxgqy3aotj.cloudfront.net;
font-src https://embed.released.soRecommended CSP Policy
Additional Media Domains
Final Recommendations
Last updated
Was this helpful?