Amfani na AngularJS ng-csp

Tafiyar da amfani

ng-csp Amfani na yana amfani don samar da sikirin Amfani na AngularJS.

Tasiri ng-csp Amfani na, AngularJS ko ta aiki kowace eval function, kuma ko ta ba aiki da tsammanin kaiwa.

ka ng-csp Amfani na no-unsafe-eval, yana ba AngularJS ya tsammanin kaiwa kuma iya aiki eval function, amma yana ba aiki da tsammanin kaiwa.

ka ng-csp Amfani na no-inline-style, yana ba AngularJS ya tsammanin kaiwa kuma iya aiki eval function.

Kuma yin amfani da amfani don zartar da kudi don Google Chrome ko Windows Application, yana da ng-csp Amfani.

Rarraba:ng-csp Amfani na iya ba ga JavaScript, amma ya sa ido ka hanyar AngularJS, wa niyayi: a ka iya da write eval function, suka a hanyar da su kaiwa, amma AngularJS ko ta yiwa eval function. Ya yi amfani da sabon hanyar, wanda zai iya kaiya wakilci wakilci a cikin lokaci na wakilci, ya kaiya kaiya 30%.

Ƙoƙarin ɗan ɗauka

Yanar gurɗe AngularJS a ɗan ɗauka "eval" da ɗan ɗauka na ɗauka:

<body ng-app="" ng-csp>
...

Kaiyewa shi ɗaya

Ƙirar ɗan ɗauka

<element ng-csp="no-unsafe-eval | no-inline-style"></element>

ɗan ɗauka

ɗan ɗauka Ƙaranta
  • no-unsafe-eval
  • no-inline-style

Karaɗe ɗan ɗauka za a iya ɗauka ne, ana ɗauka cewa ba a ɗauka eval ba kuma ba a ɗauka ɗan ɗauka na ɗauka ba.

Karaɗe ɗan ɗauka za a iya ɗauka ne daga biyu na ɗan ɗauka.

Karaɗe ɗan ɗauka za a iya ɗauka ne biyu, kuma ana ɗauka da faraɗa, amma wannan yana da matsakaici da faraɗa.