As Content-Security-Policy header is used to mainly prevent XSS attacks, I think it wouldn't matter if I disable it for .png, .jpg, .ico and .
確定! 回上一頁