Open
Cached
·
just now
2
directives
Content-Security-Policy
No enforced CSP headers found.
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: default-src 'self' 'unsafe-eval' 'unsafe-inline' blob: data: filesystem: mediastream: *.toolforge.org wikibooks.org *.wikibooks.org wikidata.org *.wikidata.org wikimedia.org *.wikimedia.org wikinews.org *.wikinews.org wikipedia.org *.wikipedia.org wikiquote.org *.wikiquote.org wikisource.org *.wikisource.org wikiversity.org *.wikiversity.org wikivoyage.org *.wikivoyage.org wiktionary.org *.wiktionary.org *.wmcloud.org *.wmflabs.org wikimediafoundation.org mediawiki.org *.mediawiki.org wss://api.svc.toolforge.org; report-uri https://csp-report.toolforge.org/collect;
default-src
Keyword
—
'self'
default-src
Keyword
—
'unsafe-eval'
default-src
Keyword
—
'unsafe-inline'
default-src
Scheme
—
blob:
default-src
Scheme
—
data:
default-src
Scheme
—
filesystem:
default-src
Scheme
—
mediastream: