content/base/test/csp/file_CSP_inlinescript_main_spec_compliant.html

Sat, 03 Jan 2015 20:18:00 +0100

author
Michael Schloh von Bennewitz <michael@schloh.com>
date
Sat, 03 Jan 2015 20:18:00 +0100
branch
TOR_BUG_3246
changeset 7
129ffea94266
permissions
-rw-r--r--

Conditionally enable double key logic according to:
private browsing mode or privacy.thirdparty.isolate preference and
implement in GetCookieStringCommon and FindCookie where it counts...
With some reservations of how to convince FindCookie users to test
condition and pass a nullptr when disabling double key logic.

michael@0 1 <html>
michael@0 2 <head>
michael@0 3 <title>CSP inline script tests</title>
michael@0 4 </head>
michael@0 5 <body onload="window.parent.scriptRan(false, 'eventattr', 'event attribute in body tag fired')">
michael@0 6
michael@0 7 <script type="text/javascript">
michael@0 8 window.parent.scriptRan(false, "textnode", "text node in a script tag executed.");
michael@0 9 </script>
michael@0 10
michael@0 11 <iframe src='javascript:window.parent.parent.scriptRan(false, "jsuri", "javascript: uri in image tag")' ></iframe>
michael@0 12
michael@0 13 <a id='anchortoclick' href='javascript:window.parent.scriptRan(false, "jsuri", "javascript: uri in anchor tag ran when clicked.");'>stuff</a>
michael@0 14 </body>
michael@0 15 </html>

mercurial