···55gem 'rack-cors'
66# bundler-audit included by Rails 8
7788-say ' Skipping strict Content Security Policy (configured as permissive)...', :cyan
88+say ' Content Security Policy disabled by default (can be enabled in initializer)...', :cyan
99initializer 'content_security_policy.rb', <<~RUBY
1010 # frozen_string_literal: true
1111···8484 }
8585RUBY
86868787-say ' Skipping CSP meta tag (CSP is disabled by default)...', :cyan
8787+say ' Skipping CSP meta tag...', :cyan
8888# CSP meta tag is not added since CSP is disabled by default
8989# Uncomment below if you enable CSP in the initializer
9090# inject_into_file 'app/views/layouts/application.html.erb', after: "<%= csrf_meta_tags %>\n" do