Refused to load the script 'http://maps.google.com/maps/api/js?key=AIzaSyB4VG2fbvhKtTKsVFS7xbs3R960Qio5EPI&language=fa-IR' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval'".
base64 image
index.html:1 Refused to load the image 'data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAHBAMAAADzDtBxAAAAD1BMVEUAAAAAAAAAAAAAAAAAAABPDueNAAAABXRSTlMUCS0gBIh/TXEAAAAaSURBVAjXYxCEAgY4UIICBmMogMsgFLtAAQCNSwXZKOdPxgAAAABJRU5ErkJggg==' because it violates the following Content Security Policy directive: "default-src *". Note that 'img-src' was not explicitly set, so 'default-src' is used as a fallback.
and for my private server return this error
Failed to load resource . https://pinsood.com/api/v1/categories.json
but i added Content-Security-Policy why return this error , how to fix it ?