Hacker News new | ask | show | jobs
by bangaladore 147 days ago
CSP is inherently a client-side browser security feature, so yes.