diff --git a/lib/httplib/httpheaders.go b/lib/httplib/httpheaders.go index 00ea2cb729f82..44ef444d1e53d 100644 --- a/lib/httplib/httpheaders.go +++ b/lib/httplib/httpheaders.go @@ -64,9 +64,6 @@ func SetIndexHTMLHeaders(h http.Header) { // Set content policy flags var cspValue = strings.Join([]string{ "default-src 'self'", - // cloud version uses stripe.com to update billing information - "script-src 'self' https://js.stripe.com", - "frame-src https://js.stripe.com", "frame-ancestors 'none'", // 'unsafe-inline' is required by CSS-in-JS to work "style-src 'self' 'unsafe-inline'",