Details
Details
- Reviewers
- None
- Maniphest Tasks
- T4340: Implement Content-Security-Policy and Strict-Transport-Security headers
- Commits
- rPa5efd7eedb3c: Add "object-src 'none'" to the Content-Security-Policy
Added a <object ... /> tag to a page, saw "Blocked Plug-In" and a CSP warning in the browser console.
Diff Detail
Diff Detail
- Repository
- rP Phabricator
- Lint
Lint Not Applicable - Unit
Tests Not Applicable