As reported by security tools we need to remove the unsafe- directives from CSP header in order comply with security policies as this directive makes the CSP too permissive
Code Link : https://github.com/topcoder-platform/micro-frontends-frame/blob/dev/src/index.ejs#L23
Atlassian link - https://topcoder.atlassian.net/browse/VULN-2201
fyi @urwithat @mtwomey