scheme-restriction.https.window.js (463B)
1 // META: script=/common/get-host-info.sub.js 2 3 promise_test(t => { 4 const img = new Image(); 5 img.src = get_host_info().HTTP_REMOTE_ORIGIN + "/fetch/cross-origin-resource-policy/resources/image.py?corp=same-site"; 6 return new Promise((resolve, reject) => { 7 img.onload = resolve; 8 img.onerror = reject; 9 document.body.appendChild(img); 10 }).finally(() => { 11 img.remove(); 12 }); 13 }, "Cross-Origin-Resource-Policy does not block Mixed Content <img>");