On 4/14/11 5:49 PM, Adam Barth wrote: > The spec says: > > [[ > In the following example a page located at > http://example.org/page.html was requested and returned with its > response a policy of default-src 'self'; policy-uri > http://example.org/csp-report.cgi. The policy was violated by an image > element from evil.example.com which had been embedded in the page. > ]] > > Presumably we mean report-uri. > > Adam Indeed we do: https://dvcs.w3.org/hg/content-security-policy/rev/d571efb5794f Thanks for catching. -BrandonReceived on Friday, 15 April 2011 21:33:50 GMT
This archive was generated by hypermail 2.2.0+W3C-0.50 : Friday, 15 April 2011 21:33:51 GMT