Skip to content

Commit

Permalink
Track the source of a given policy. (#214)
Browse files Browse the repository at this point in the history
In order to support the nonce-hiding changes suggested in whatwg/html#2373, this
patch adds a 'source' to each policy object, which allows us to determine whether
it was sent via an HTTP header or a '<meta>' element.

As a drive-by, it also cleans up the formatting and structure of the parsing
algorithms, and more formally defines a 'CSP list' for clarity.
  • Loading branch information
ryandel8834 authored and ryandel8834 committed May 24, 2017
1 parent d5a2960 commit 2e360a2
Show file tree
Hide file tree
Showing 2 changed files with 316 additions and 246 deletions.
Loading

0 comments on commit 2e360a2

Please sign in to comment.