mattpointblank’s avatarmattpointblank’s Twitter Archive—№ 15,524

  1. …in reply to @alexolder
    @alexolder @jegtnes In the console output? Dunno, but CSP is an HTTP header so it's visible to anyone, publicly. I guess it could give attackers a list of places they could try to attack, but there's not much you can do about that!