summaryrefslogtreecommitdiffstats
path: root/testing/web-platform/tests/referrer-policy/generic/unsupported-csp-referrer-directive.html
blob: 27a3a99113aecc3617ae7b065904b0fbc9d4cc68 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
<!DOCTYPE html>
<html>
  <head>
    <title>Referrer Policy: CSP 'referrer' directive should not be supported</title>
    <meta http-equiv="Content-Security-Policy" content="referrer no-referrer">
    <script src="/resources/testharness.js"></script>
    <script src="/resources/testharnessreport.js"></script>
    <!-- Common global functions for referrer-policy tests. -->
    <script src="/common/security-features/resources/common.sub.js"></script>
  </head>
  <body>
    <h1>Referrer Policy: CSP 'referrer' directive should not be supported</h1>
    <p>CSP used to have a 'referrer' directive to set a Referrer Policy. This directive has been removed and should not be supported.</p>

    <pre id="received_message">Running...</pre>

    <script>
      promise_test(function() {
        var urlPath = '/common/security-features/subresource/image.py?cache_destroyer=' + (new Date()).getTime();
        return requestViaImage(urlPath, null, 'always')
          .then(function(message) {
            assert_equals(message.referrer, document.location.href);
          });
      }, "Image has a referrer despite CSP 'referrer' directive");
    </script>

    <div id="log"></div>
  </body>
</html>