Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(164)

Unified Diff: LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt

Issue 137233005: CSP: Improve blocked inline script error message. (Closed) Base URL: svn://svn.chromium.org/blink/trunk
Patch Set: Yay. Created 6 years, 11 months ago
Use n/p to move between diff chunks; N/P to move between comments. Draft comments are only viewable by you.
Jump to:
View side-by-side diff with in-line comments
Download patch
Index: LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt
diff --git a/LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt b/LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt
index f665b211bd078cfe99ceb8f6b515bece8eda0a8b..c6c3cc9fd8af3ff39dbdcd8166ba11ace2367f92 100644
--- a/LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt
+++ b/LayoutTests/http/tests/security/contentSecurityPolicy/combine-multiple-policies-expected.txt
@@ -1,5 +1,5 @@
-CONSOLE ERROR: line 11: Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self'".
+CONSOLE ERROR: line 11: Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self'". Either the 'unsafe-inline' keyword, a hash ('sha256-...'), or a nonce ('nonce-...') is required to enable inline execution.
-CONSOLE ERROR: line 14: Refused to apply inline style because it violates the following Content Security Policy directive: "style-src 'none'".
+CONSOLE ERROR: line 14: Refused to apply inline style because it violates the following Content Security Policy directive: "style-src 'none'". Either the 'unsafe-inline' keyword, a hash ('sha256-...'), or a nonce ('nonce-...') is required to enable inline execution.
This test checks that we enforce all the supplied policies. This test passes if it doesn't alert fail and if the style doesn't apply.

Powered by Google App Engine
This is Rietveld 408576698