Sign in
webkit
/
WebKit
/
34573b4327f502983405341f6edd2f8dcbc2cb0c
/
.
/
LayoutTests
/
imported
/
w3c
/
web-platform-tests
/
content-security-policy
/
object-src
/
object-src-no-url-allowed.html.sub.headers
blob: 071eb96fc0a74c0d369205a93c3f4108505c9480 [
file
] [
log
] [
blame
]
Set
-
Cookie
:
object
-
src
-
no
-
url
-
allowed
={{
$id
:
uuid
()}};
Path
=
/content-security-policy/
object
-
src
/
Content
-
Security
-
Policy
:
object
-
src
'self'
;
script
-
src
'self'
'unsafe-inline'
;
report
-
uri
/
reporting
/
resources
/
report
.
py
?
op
=
put
&
reportID
={{
$id
}}