report-uri-effective-directive.html (643B)
1 <!DOCTYPE html> 2 <html> 3 <head> 4 <script src="/resources/testharness.js"></script> 5 <script src="/resources/testharnessreport.js"></script> 6 <title>Violation report is sent if violation occurs.</title> 7 <!-- CSP headers 8 Content-Security-Policy: default-src 'self'; report-uri /reporting/resources/report.py?op=put&reportID={{$id}} 9 --> 10 </head> 11 <body> 12 <script> 13 // This script block will trigger a violation report. 14 alert('FAIL'); 15 </script> 16 <script async defer src='../support/checkReport.sub.js?reportField=violated-directive&reportValue=script-src%20%27self%27'></script> 17 </body> 18 </html>