Content-Security-Policy:upgrade-insecure-requests; 示例 //headerContent-Security-Policy:upgrade-insecure-requests;//metatag
script-srchttp://example.com/ 示例 示例:禁用不安全的内联/评估,仅允许通过https: //headerContent-Security-Policy:default-srchttps://metatag