请参阅 Mitigate XSS Attacks with Content Security Policy - #3 by pmusaraj content security policy 找到这些设置):
content security policy