==== Content Security Policy ==== nano /etc/apache/sites-available/default-ssl.conf ... Header set Content-Security-Policy "default-scr 'self'; ...