 Thomas Kaul
					
					2 years ago
						Thomas Kaul
					
					2 years ago
					
						
							committed by
							
								 GitHub
								GitHub
							
						 
					
				 
				
			 
		 
		
			
				
					
					No known key found for this signature in database
					
						
							GPG Key ID: 4AEE18F83AFDEB23
						
					
				
			
		
		
		
	
		
			
				 3 changed files with 
15 additions and 
13 deletions
			 
			
		 
		
			
				- 
					
					
					 
					CHANGELOG.md
				
- 
					
					
					 
					apps/api/src/main.ts
				
- 
					
					
					 
					package.json
				
				
				
					
						
							
								
									
	
		
			
				
					|  |  | @ -5,7 +5,7 @@ All notable changes to this project will be documented in this file. | 
			
		
	
		
			
				
					|  |  |  | The format is based on [Keep a Changelog](https://keepachangelog.com/en/1.0.0/), | 
			
		
	
		
			
				
					|  |  |  | and this project adheres to [Semantic Versioning](https://semver.org/spec/v2.0.0.html). | 
			
		
	
		
			
				
					|  |  |  | 
 | 
			
		
	
		
			
				
					|  |  |  | ## 1.283.4 - 2023-06-24 | 
			
		
	
		
			
				
					|  |  |  | ## 1.283.5 - 2023-06-25 | 
			
		
	
		
			
				
					|  |  |  | 
 | 
			
		
	
		
			
				
					|  |  |  | ### Added | 
			
		
	
		
			
				
					|  |  |  | 
 | 
			
		
	
	
		
			
				
					|  |  | 
 | 
			
		
	
								
							
						
					 
					
				 
			 
		
			
			
			
			
			
			
				
				
					
						
							
								
									
	
		
			
				
					|  |  | @ -35,18 +35,20 @@ async function bootstrap() { | 
			
		
	
		
			
				
					|  |  |  |   // Support 10mb csv/json files for importing activities
 | 
			
		
	
		
			
				
					|  |  |  |   app.use(bodyParser.json({ limit: '10mb' })); | 
			
		
	
		
			
				
					|  |  |  | 
 | 
			
		
	
		
			
				
					|  |  |  |   app.use( | 
			
		
	
		
			
				
					|  |  |  |     helmet({ | 
			
		
	
		
			
				
					|  |  |  |       contentSecurityPolicy: { | 
			
		
	
		
			
				
					|  |  |  |         directives: { | 
			
		
	
		
			
				
					|  |  |  |           frameSrc: ["'self'", 'https://js.stripe.com'], // Allow loading frames from Stripe
 | 
			
		
	
		
			
				
					|  |  |  |           scriptSrc: ["'self'", "'unsafe-inline'", 'https://js.stripe.com'], // Allow inline scripts and scripts from Stripe
 | 
			
		
	
		
			
				
					|  |  |  |           scriptSrcAttr: ["'self'", "'unsafe-inline'"], // Allow inline event handlers
 | 
			
		
	
		
			
				
					|  |  |  |           styleSrc: ["'self'", "'unsafe-inline'"] // Allow inline styles
 | 
			
		
	
		
			
				
					|  |  |  |   if (configService.get<string>('ENABLE_FEATURE_SUBSCRIPTION') === 'true') { | 
			
		
	
		
			
				
					|  |  |  |     app.use( | 
			
		
	
		
			
				
					|  |  |  |       helmet({ | 
			
		
	
		
			
				
					|  |  |  |         contentSecurityPolicy: { | 
			
		
	
		
			
				
					|  |  |  |           directives: { | 
			
		
	
		
			
				
					|  |  |  |             frameSrc: ["'self'", 'https://js.stripe.com'], // Allow loading frames from Stripe
 | 
			
		
	
		
			
				
					|  |  |  |             scriptSrc: ["'self'", "'unsafe-inline'", 'https://js.stripe.com'], // Allow inline scripts and scripts from Stripe
 | 
			
		
	
		
			
				
					|  |  |  |             scriptSrcAttr: ["'self'", "'unsafe-inline'"], // Allow inline event handlers
 | 
			
		
	
		
			
				
					|  |  |  |             styleSrc: ["'self'", "'unsafe-inline'"] // Allow inline styles
 | 
			
		
	
		
			
				
					|  |  |  |           } | 
			
		
	
		
			
				
					|  |  |  |         } | 
			
		
	
		
			
				
					|  |  |  |       } | 
			
		
	
		
			
				
					|  |  |  |     }) | 
			
		
	
		
			
				
					|  |  |  |   ); | 
			
		
	
		
			
				
					|  |  |  |       }) | 
			
		
	
		
			
				
					|  |  |  |     ); | 
			
		
	
		
			
				
					|  |  |  |   } | 
			
		
	
		
			
				
					|  |  |  | 
 | 
			
		
	
		
			
				
					|  |  |  |   const BASE_CURRENCY = configService.get<string>('BASE_CURRENCY'); | 
			
		
	
		
			
				
					|  |  |  |   const HOST = configService.get<string>('HOST') || '0.0.0.0'; | 
			
		
	
	
		
			
				
					|  |  | 
 | 
			
		
	
								
							
						
					 
					
				 
			 
		
			
			
			
			
			
			
				
				
					
						
							
								
									
	
		
			
				
					|  |  | @ -1,6 +1,6 @@ | 
			
		
	
		
			
				
					|  |  |  | { | 
			
		
	
		
			
				
					|  |  |  |   "name": "ghostfolio", | 
			
		
	
		
			
				
					|  |  |  |   "version": "1.283.4", | 
			
		
	
		
			
				
					|  |  |  |   "version": "1.283.5", | 
			
		
	
		
			
				
					|  |  |  |   "homepage": "https://ghostfol.io", | 
			
		
	
		
			
				
					|  |  |  |   "license": "AGPL-3.0", | 
			
		
	
		
			
				
					|  |  |  |   "scripts": { | 
			
		
	
	
		
			
				
					|  |  | 
 |