From 4d26298b98c624ea776967ad7a7f0c501217fd0d Mon Sep 17 00:00:00 2001 From: Daniel Scalzi Date: Wed, 25 Apr 2018 17:06:10 -0400 Subject: [PATCH] Added Content-Security-Policy to ensure that external scripts cannot be loaded. Moved inline scripts to their own files. Moved all front-end scripts to /assets/js/scripts. --- app/app.ejs | 6 +- app/assets/js/{ => scripts}/actionbinder.js | 26 ++- app/assets/js/scripts/login.js | 212 +++++++++++++++++++ app/assets/js/{ => scripts}/uicore.js | 0 app/assets/js/scripts/welcome.js | 8 + app/login.ejs | 215 +------------------- app/welcome.ejs | 13 +- 7 files changed, 246 insertions(+), 234 deletions(-) rename app/assets/js/{ => scripts}/actionbinder.js (96%) create mode 100644 app/assets/js/scripts/login.js rename app/assets/js/{ => scripts}/uicore.js (100%) create mode 100644 app/assets/js/scripts/welcome.js diff --git a/app/app.ejs b/app/app.ejs index 16ce7e4..b85c057 100644 --- a/app/app.ejs +++ b/app/app.ejs @@ -1,9 +1,9 @@ - + Westeroscraft Launcher - - + +