Skip to content

Use daily-js "avoidEval" to remove "unsafe-eval" from CSP headers #143

@abhinavankur-sw

Description

@abhinavankur-sw

When using vapi sdk I am getting this CSP error

Failed to load call object bundle https://c.daily.co/call-machine/versioned/0.80.0/static/call-machine-object-bundle.js: EvalError: Refused to evaluate a string as JavaScript because 'unsafe-eval' is not an allowed source of script in the following Content Security Policy directive

Daily-js has this option to avoidEval and use code path. Link. Is there a way to use this config from vapi?

Image

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions