2min chapter

Overtired cover image

310: Brett’s Favorite Apps of 2022!

Overtired

CHAPTER

Is There a Security Content Security Policy in JavaScript?

Security content security policy (CSP) has limited the ability of JavaScript to access external web pages and therefore defeated most bookmarklets. Sometimes you have to do a little security bypassing to get local scripts to run. But by hosting them on HTTPS servers and loading them if they if they load remote code and you do it over HTTPS, you can sometimes work around. Some sites won't allow cross site execution of JavaScript. So they can't eat the pager on won't allow you to load an external JavaScript.

00:00

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode