본문 바로가기

[IT/Programming]/HTML related

CSP (Content Security Policy) : iframe, image (img), video blocking

# CSP (Content Security Policy) : iframe, image (img), video blocking ``` document.referrer; // in javascript req.headers().get("Referer"); // in vert.x ```/ ## RRA
  1. MDN - CSP (Content Security Policy) policy directives
  2. MDN - The X-Frame-Options response header