OLD | NEW |
1 <!DOCTYPE html> | 1 <!DOCTYPE html> |
2 <html> | 2 <html> |
3 <head> | 3 <head> |
| 4 <script src="resources/report-test.js"></script> |
4 <meta http-equiv="Content-Security-Policy" content="img-src 'none'"> | 5 <meta http-equiv="Content-Security-Policy" content="img-src 'none'"> |
5 <meta http-equiv="Content-Security-Policy-Report-Only" content="script-src '
self'; report-uri resources/save-report.php"> | 6 <meta http-equiv="Content-Security-Policy-Report-Only" content="script-src '
self'; report-uri resources/save-report.php"> |
6 </head> | 7 </head> |
7 <body> | 8 <body> |
8 This image should be blocked, but should not show up in the violation report
. | 9 This image should be blocked, but should not show up in the violation report
. |
9 <img src="../resources/abe.png"> | 10 <img src="../resources/abe.png"> |
10 <script> | 11 <script> |
11 // This script block will trigger a violation report but shouldn't be bl
ocked. | 12 // This script block will trigger a violation report but shouldn't be bl
ocked. |
12 alert('PASS'); | 13 alert('PASS'); |
13 </script> | 14 </script> |
14 <script src="resources/go-to-echo-report.js"></script> | 15 <script src="resources/go-to-echo-report.js"></script> |
15 </body> | 16 </body> |
16 </html> | 17 </html> |
OLD | NEW |