blob: 43d2f6ab7ab7f535cef0f3d934f151c403d09a66 [file] [log] [blame]
<?php
header("Content-Security-Policy-Report-Only: script-src 'self'; upgrade-insecure-requests; report-uri resources/save-report.php");
?>
<script>
// This script block will trigger a violation report but shouldn't be blocked.
alert('PASS');
</script>
<script src="resources/go-to-echo-report.js"></script>