Skip to content
This repository has been archived by the owner on Nov 4, 2024. It is now read-only.

Don't recommend "Deny by default" when prefetch-src is experimental #463

Open
carlin-q-scott opened this issue Feb 28, 2022 · 0 comments
Open

Comments

@carlin-q-scott
Copy link

The following recommendation has to be ignored if a site prefetches resources:

Deny by default, using default-src 'none'

I can specify my prefetch-src for Chrome, but Firefox doesn't support that directive, so it falls back to default-src.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant