diff --git a/src/zap.conf b/src/zap.conf index c1ac28644..e226d1db7 100644 --- a/src/zap.conf +++ b/src/zap.conf @@ -68,7 +68,8 @@ 10038 OUTOFSCOPE http://app:8080/dns/dnssec 10038 OUTOFSCOPE http://app:8080/dns/dnssec/dsdata 10038 OUTOFSCOPE http://app:8080/org-name-address -10038 OUTOFSCOPE http://app:8080/domain_requests +10038 OUTOFSCOPE http://app:8080/domain_requests/ +10038 OUTOFSCOPE http://app:8080/domains/ # This URL always returns 404, so include it as well. 10038 OUTOFSCOPE http://app:8080/todo # OIDC isn't configured in the test environment and DEBUG=True so this gives a 500 without CSP headers