-
Per #897 , plotly will not be 100% compatible with a strict Content Security Policy concerning `script-src` (i.e. without `unsafe-efal`).
But it's possible to use it with a strict policy, only some…
-
### Description
The HTML output has an invalid doctype line like this:
```html
```
This happens even with an extremely minimal configuration file, see below.
### What type of issue is thi…
-
### Description
We recently noticed some identity related pages that are out of date
* DS Logon and MHV Credential Service Providers (CSPs) should be updated for timeline of when VA is depreca…
-
For https://github.com/elastic/observability-dev/issues/3808 , a dedicated AWS Firehose onboarding flow will be made available on stateful cloud deployments.
For Firehose, the fact whether the curr…
-
Hello, I use TYPO3 v12.4.13 with a version of yoast 9.0.3.
The loading is looping and when looking at the console, we have csp errors:
"Refused to apply inline style because it violates the followi…
-
### What feature?
The application currently lacks a Content Security Policy (CSP), which increases the risk of cross-site scripting (XSS) and other injection attacks. Implementing a CSP is essential …
-
I was sure CSP trickles down very strongly to child realms, but this resource seems to show otherwise ([resource](https://lab.wallarm.com/how-to-trick-csp-in-letting-you-run-whatever-you-want-73cb5ff4…
-
-
**Describe the solution you'd like**
The @googlemaps/js-api-loader should support CSP TrustedTypes
**Describe alternatives you've considered**
Disabling CSP
**Additional context**
When CSP…
-
### Preconditions and environment
- Magento version: 2.4.7-p1
### Steps to reproduce
1. Enable `dev/css/use_css_critical_path` in order to facilitate critical CSS functionality
2. Add some items…