Closed
Bug 950885
Opened 11 years ago
Closed 11 years ago
Use standard CSP headers only
Categories
(Webmaker Graveyard :: Profile, defect)
Webmaker Graveyard
Profile
Tracking
(Not tracked)
RESOLVED
FIXED
People
(Reporter: jon, Assigned: jon)
References
Details
Current versions of Chrome, Firefox, and Safari support the standard Content-Security-Policy header. We shouldn't be sending the deprecated X-Content-Security-Policy and X-Webkit-CSP headers.
Comment 1•11 years ago
|
||
Commit pushed to master at https://github.com/mozilla/webmaker-profile-service https://github.com/mozilla/webmaker-profile-service/commit/4712d88a8dbde955526612f18a4316ed85257e8d Fix bug 950885 - Only send standard CSP header
Updated•11 years ago
|
Status: ASSIGNED → RESOLVED
Closed: 11 years ago
Resolution: --- → FIXED
You need to log in
before you can comment on or make changes to this bug.
Description
•