Content Security Policy Configuration
// remix.config.ts - CSP headers
const cspPolicy = {
  "default-src": ["'self'"],
  "script-src": ["'self'", "'nonce-{random}'"],
  "style-src": ["'self'", "fonts.googleapis.com"],
  "font-src": ["fonts.gstatic.com"],
  "img-src": ["'self'", "data:", "https:"],
  "connect-src": ["'self'", "*.supabase.co", "*.sip-provider.com"],
  "frame-ancestors": ["'none'"],
};