Skip to content

Compatibility with Content Security Policy without 'unsafe-eval'? #21

@josephguillaume

Description

@josephguillaume

Describe the bug
nodeSolidServer/solid-auth-client#162 is an issue here too.
I'm not sure what the relationship is with solid-auth-client or the degree to which CSP compatibility is a goal here compared to solid-client-authn, but new Function calls still exist in the solid-auth-fetcher bundle.
(I'm mostly adding this in case others run into an error)

To Reproduce
Specify a Content-Security-Policy header without 'unsafe-eval'
Login ultimately fails with "Could not obtain the key to sign the token with."

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions