Code Monkey home page Code Monkey logo

Comments (4)

sandstrom avatar sandstrom commented on June 10, 2024

Please tell me more, what behaviour would you like to see instead?

Afaik a <meta ...> tag with a http-equiv value other than Content-Security-Policy doesn't make any sense. But I'm happy to hear your thoughts on this!

from ember-cli-content-security-policy.

devinus avatar devinus commented on June 10, 2024

Content-Security-Policy-Report-Only if that's what contentSecurityPolicyHeader is set to. The meta option is just a different way to use this plugin. Sometimes I want it to be Report Only on my e.g. dev or staging environment.

from ember-cli-content-security-policy.

sandstrom avatar sandstrom commented on June 10, 2024

It's not part of the spec, unfortunately (I wish it were!).

Note: The Content-Security-Policy-Report-Only header is not supported inside a meta element. Neither are the report-uri, frame-ancestors, and sandbox directives.

https://w3c.github.io/webappsec-csp/#meta-element

from ember-cli-content-security-policy.

sandstrom avatar sandstrom commented on June 10, 2024

I'm closing this, since per the spec the http-equiv value is static.

from ember-cli-content-security-policy.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.