OLD | NEW |
1 <!DOCTYPE html> | 1 <!DOCTYPE html> |
2 <html> | 2 <html> |
3 <head> | 3 <head> |
4 <script src="resources/report-test.js"></script> | 4 <script src="resources/report-test.js"></script> |
5 <meta http-equiv="Content-Security-Policy" content="img-src 'none'"> | 5 <meta http-equiv="Content-Security-Policy" content="img-src 'none'"> |
6 <meta http-equiv="Content-Security-Policy-Report-Only" content="script-src '
self'; report-uri resources/save-report.php"> | 6 <meta http-equiv="Content-Security-Policy-Report-Only" content="script-src '
self'; report-uri resources/save-report.php?test=report-and-enforce.html"> |
7 </head> | 7 </head> |
8 <body> | 8 <body> |
9 This image should be blocked, but should not show up in the violation report
. | 9 This image should be blocked, but should not show up in the violation report
. |
10 <img src="../resources/abe.png"> | 10 <img src="../resources/abe.png"> |
11 <script> | 11 <script> |
12 // This script block will trigger a violation report but shouldn't be bl
ocked. | 12 // This script block will trigger a violation report but shouldn't be bl
ocked. |
13 alert('PASS'); | 13 alert('PASS'); |
14 </script> | 14 </script> |
15 <script src="resources/go-to-echo-report.js"></script> | 15 <script src="resources/go-to-echo-report.js"></script> |
16 </body> | 16 </body> |
17 </html> | 17 </html> |
OLD | NEW |