fix(web): expose loopback policy safely

This commit is contained in:
ZiyaZhang
2026-08-02 13:30:53 -07:00
parent 7a71ab9a92
commit 57343cfeb8
5 changed files with 5 additions and 4 deletions

View File

@@ -28,7 +28,7 @@ const CSS_VIRTUAL_SUFFIX = '.mjs'
* Everything else under @deepseek-ai/* is either a module-table entry
* (external) or a leak the purity gate rejects.
*/
export const INLINE_SAFE = /^@deepseek-ai\/dsh-(host-apiproxy|session|llm|tools|brand)(\/|$)/
export const INLINE_SAFE = /^(?:@deepseek-ai\/dsh-(?:host-apiproxy|session|llm|tools|brand)(?:\/|$)|@deepseek-ai\/dsh-client-connection\/loopback-hostname$)/
/**
* Documented TEMPORARY exemption, not a platform module (hence not in