Commit 44a4962e authored by Benjamin Bellamy's avatar Benjamin Bellamy 💬
Browse files

fix(embeddable-player): enable any ancestor when X-Frame-Options is set on server

parent 4e5b11ba
Loading
Loading
Loading
Loading
Loading
+2 −0
Original line number Diff line number Diff line
@@ -88,6 +88,8 @@ class Episode extends BaseController

    public function embeddablePlayer($theme = 'light-transparent')
    {
        header('Content-Security-Policy: frame-ancestors https://* http://*');

        self::triggerWebpageHit($this->episode->podcast_id);

        $session = \Config\Services::session();