CSP nonce-sourceã¨ã¯ï¼ Content Security Policy (CSP) ã¯ãã¯ãã¹ãµã¤ãã¹ã¯ãªããã£ã³ã° (XSS) ããã¼ã¿ã¤ã³ã¸ã§ã¯ã·ã§ã³æ»æãå«ããããç¥ããã種é¡ã®æ»æãæ¤åºãã¦è»½æ¸ãããã»ãã¥ãªãã£ã®è¿½å ã¬ã¤ã¤ã¼ã§ãããããã®æ»æææ³ã¯ããã¼ã¿çªçãããµã¤ãæ¹å¤ããã«ã¦ã§ã¢ææã¾ã§ããã¹ã¦ã«ä½¿ç¨ããã¾ãã https://developer.mozilla.org/ja/docs/Security/CSP ããã XSSã«é¢ãã¦ç°¡åã«è¨ãã¨ãå®è¡ã§ããJavaScriptãå¶éãã¦ãå¤é¨ããã¹ã¯ãªãããæ³¨å ¥ããã¦ããã©ã¦ã¶ãå®è¡ããªããã¨ã§XSSãé²å¾¡ããæ©è½ã¨ãããã¨ã«ãªãã¾ãã ä¾ãã°ãèªåã®ãµã¼ãä¸ã®jsãã¡ã¤ã«ããã®ã¿ã®scriptãå®è¡ããããã«æå®ããã°ãå¤é¨ããã¹ã¯ãªãããæ¿å ¥ããã¦ãå®è¡ã¯ãããå®å ¨ã«ãªãã¾ãã ããããã¤ã³ã©ã¤ã³ã®Ja
{{#tags}}- {{label}}
{{/tags}}