Skip to content

✔ CSP against the HTTP response serving it. #25

Answered by noamr
righettod asked this question in Q&A
Discussion options

You must be logged in to vote

Yes, Content-Security-Policy is a header that applies to a document, not to a sub-resource like a script. This is how it designed...

Replies: 5 comments 1 reply

Comment options

righettod
Feb 24, 2024
Maintainer Author

You must be logged in to vote
0 replies
Comment options

righettod
Feb 24, 2024
Maintainer Author

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Comment options

righettod
Feb 24, 2024
Maintainer Author

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@righettod
Comment options

righettod Feb 24, 2024
Maintainer Author

Answer selected by righettod
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
documentation Improvements or additions to documentation done Work on the topic is finished
3 participants