DescriptionAdd content-security-policy (CSP) to chrome://flags.
CSP provides a second line of defense against XSS flaws in the underlying page
by requiring all scripts to come from well-known external sources. This CL
moves the JS formerly in flags.html into new file flags.js, and adds some JS
to attach handlers formerly set by inline onclick="" attributes.
Committed: http://src.chromium.org/viewvc/chrome?view=rev&revision=89723
Patch Set 1 #
Total comments: 6
Patch Set 2 : '' #Patch Set 3 : '' #Patch Set 4 : '' #
Total comments: 1
Messages
Total messages: 7 (0 generated)
|