| OLD | NEW |
| 1 CONSOLE MESSAGE: The 'allow' directive has been replaced with 'default-src'. Ple
ase use that directive instead, as 'allow' has no effect. | 1 CONSOLE ERROR: The 'allow' directive has been replaced with 'default-src'. Pleas
e use that directive instead, as 'allow' has no effect. |
| 2 CONSOLE MESSAGE: Refused to load the script 'http://127.0.0.1:8000/security/cont
entSecurityPolicy/resources/script.js' because it violates the following Content
Security Policy directive: "script-src 'none'". | 2 CONSOLE ERROR: Refused to load the script 'http://127.0.0.1:8000/security/conten
tSecurityPolicy/resources/script.js' because it violates the following Content S
ecurity Policy directive: "script-src 'none'". |
| 3 | 3 |
| 4 Loads an iframe which in turns tries to load an external script. The iframe has
a content security policy disabling external scripts. So the script should not g
et executed. | 4 Loads an iframe which in turns tries to load an external script. The iframe has
a content security policy disabling external scripts. So the script should not g
et executed. |
| 5 | 5 |
| 6 | 6 |
| 7 | 7 |
| 8 -------- | 8 -------- |
| 9 Frame: '<!--framePath //<!--frame0-->-->' | 9 Frame: '<!--framePath //<!--frame0-->-->' |
| 10 -------- | 10 -------- |
| 11 PASS | 11 PASS |
| OLD | NEW |