OLD | NEW |
1 CONSOLE MESSAGE: The 'allow' directive has been replaced with 'default-src'. Ple
ase use that directive instead, as 'allow' has no effect. | 1 CONSOLE ERROR: The 'allow' directive has been replaced with 'default-src'. Pleas
e use that directive instead, as 'allow' has no effect. |
2 CONSOLE MESSAGE: Refused to load the script 'http://localhost:8000/security/cont
entSecurityPolicy/resources/script.js' because it violates the following Content
Security Policy directive: "default-src 'self'". Note that 'script-src' was not
explicitly set, so 'default-src' is used as a fallback. | 2 CONSOLE ERROR: Refused to load the script 'http://localhost:8000/security/conten
tSecurityPolicy/resources/script.js' because it violates the following Content S
ecurity Policy directive: "default-src 'self'". Note that 'script-src' was not e
xplicitly set, so 'default-src' is used as a fallback. |
3 | 3 |
4 This script should not execute even through the second CSP header would allow it
. | 4 This script should not execute even through the second CSP header would allow it
. |
5 | 5 |
6 | 6 |
7 | 7 |
8 -------- | 8 -------- |
9 Frame: '<!--framePath //<!--frame0-->-->' | 9 Frame: '<!--framePath //<!--frame0-->-->' |
10 -------- | 10 -------- |
11 PASS | 11 PASS |
OLD | NEW |