{config, ...}: let domain = config.customOps.domain; in { services.nginx.virtualHosts."cpcheck.${domain}" = { extraConfig = '' access_log off; error_log off; add_header Content-Security-Policy "default-src 'none'"; add_header 'Referrer-Policy' 'same-origin'; ''; locations."/".return = 204; forceSSL = false; addSSL = true; enableACME = true; }; }