https://github.com/web-platform-tests/wpt
Raw File
Tip revision: b9c97b372ba9eeb46dc8e5d488df90881bd79f1b authored by Ben Kelly on 19 March 2018, 14:38:38 UTC
Verify that fetch API `force-cache` and `only-if-cached` respect no-store/no-cache headers.
Tip revision: b9c97b3
block-string-assignment-to-script-src.tentative.html
<!DOCTYPE html>
<html>
<head>
  <script src="/resources/testharness.js"></script>
  <script src="/resources/testharnessreport.js"></script>
  <script src="./support/helper.js"></script>

  <meta http-equiv="Content-Security-Policy" content="require-trusted-types">
</head>
<body>
<script>
  // String assignments throw.
  test(t => {
    var s = document.createElement('script');
    assert_throws(new TypeError(), _ => {
      s.src = URLS.safe;
    });
    assert_equals('', s.src);
  }, "'string'");

  // TrustedURL assignments throw.
  test(t => {
    var url = TrustedURL.unsafelyCreate(URLS.safe);

    var s = document.createElement('script');
    assert_throws(new TypeError(), _ => {
      s.src = url;
    });
    assert_equals('', s.src);
  }, "TrustedURL(safe)");

  // TrustedScriptURL assignments work.
  test(t => {
    var url = TrustedScriptURL.unsafelyCreate(URLS.safe);

    var s = document.createElement('script');
    s.src = url;
    assert_equals(url + '', s.src);
  }, "TrustedScriptURL(safe)");

  test(t => {
    var url = TrustedScriptURL.unsafelyCreate(URLS.javascript);

    var s = document.createElement('script');
    s.src = url;
    assert_equals(url + '', s.src);
  }, "TrustedScriptURL(javascript)");

  test(t => {
    var url = TrustedScriptURL.unsafelyCreate(URLS.external);

    var s = document.createElement('script');
    s.src = url;
    assert_equals(url + '', s.src);
  }, "TrustedScriptURL(external)");
</script>
back to top