-
Notifications
You must be signed in to change notification settings - Fork 880
Open
Description
The check if an implementation works with a content security policy hasn't been run regularly.
The following frameworks fail with CSP and currently haven't flag #1139 set with the following error "Refused to apply inline style because it violates the following Content Security Policy directive" (due to 'style-src-elem'). Can you please check if you can remove that inline styling?
In contrast to the other CSP violations in this case the page works fine, so it could be fixable (or maybe ignorable on my side?).
- bobril @Bobris
- cample @antonmak1
- openui5 @pskelin @aborjinik
The following frameworks fail with CSP and currently haven't flag #1139 set with the following error "Refused to execute inline script".
- dojo
- goui
- owl
- qwik
- quel
- sprae
I'll perform some additional checks and then add the #1139 to package.json for those frameworks.
Metadata
Metadata
Assignees
Labels
No labels