Skip to content

CSP source expression syntax #756

Answered by wbamberg
wbamberg asked this question in Content
Discussion options

You must be logged in to vote

Thanks for this response!

As per mdn/content#35947 (comment) I agree that what we do not doesn't work - the sources are too separated from where they are used and so context is lost. We can solve this either by choosing to duplicate content, or link as you are suggesting. Duplicating is best for readers, linking is best for maintainers. Either is better than what is there now.

I am not sure about having the sources in the directive page vs in default-src. I kind of like the default-src since it can take all the arguments anyway, that means you don't have to link elsewhere for more information in that page. The arguments for the fetch directives page are that

  • this is already a large pag…

Replies: 2 comments 6 replies

Comment options

You must be logged in to vote
1 reply
@wbamberg
Comment options

wbamberg Nov 6, 2024
Maintainer Author

Comment options

You must be logged in to vote
5 replies
@wbamberg
Comment options

wbamberg Nov 11, 2024
Maintainer Author

Answer selected by wbamberg
@hamishwillee
Comment options

@bsmth
Comment options

@wbamberg
Comment options

wbamberg Nov 15, 2024
Maintainer Author

@bsmth
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
4 participants