0
的Zemanta Chrome Extension失敗,出現以下錯誤信息加載content_security_policy未生效的Chrome擴展
loader.js:13 Refused to load the script 'https://static.zemanta.com/widgets/blogger.com/merged-blogger.js?v=1451290656'
because it violates the following Content Security Policy directive:
"script-src 'self' *.google.com *.google-analytics.com 'unsafe-inline'
'unsafe-eval' *.gstatic.com *.googlesyndication.com *.blogger.com
*.googleapis.com uds.googleusercontent.com https://s.ytimg.com
www-onepick-opensocial.googleusercontent.com www-bloggervideo-opensocial.googleusercontent.com
www-blogger-opensocial.googleusercontent.com *.blogspot.com https://www.blogblog.com".
我已經改變了content_securiy_policy
線以下,並重新加載擴展
"content_security_policy": "script-src 'self' https://ssl.google-analytics.com https://*.zemanta.com; object-src 'self'"
爲什麼它在上面的錯誤消息中沒有列出CSP指令中列出的"https://*.zemanta.com"
,我如何確保它在CSP中?