Permalink
Browse files

fix content security policy

1 parent a7c3aa3 commit dd4996b4f5a844551043734012ebe804eff57dd9 @k2nr committed Dec 6, 2012
Showing with 12 additions and 11 deletions.
  1. +2 −2 background.html
  2. +0 −1 coffee/storage.coffee
  3. +4 −4 lib/crocro.webAi.WebSrch.js
  4. +2 −2 lib/jsapi
  5. +4 −2 manifest.json
View
@@ -1,12 +1,12 @@
<html>
<head>
+<script type="text/javascript" src="lib/jquery-1.7.1.js"></script>
<script type="text/javascript" src="tab.js"></script>
<script type="text/javascript" src="utils.js"></script>
<script type="text/javascript" src="settings.js"></script>
<script type="text/javascript" src="lib/jsapi"></script>
<script type="text/javascript" src="lib/crocro.webAi.WebSrch.js"></script>
<script type="text/javascript" src="background.js"></script>
-<script>
-</script>
</head>
</html>
+
@@ -1,6 +1,5 @@
this.vichrome ?= {}
g = this.vichrome
-
g.storage = {
set : (items, callback) ->
storage.set
@@ -92,13 +92,13 @@
var autoSrcherInit = false; // Searcherオブジェクト
// Google AJAX APIのURL
- var urlGglJSApi = "http://www.google.com/jsapi";
+ var urlGglJSApi = "https://www.google.com/jsapi";
// jQueryのURL
- var urlJQuery = "http://ajax.googleapis.com/ajax/libs/jquery/1.4.3/jquery.min.js";
+ var urlJQuery = "https://ajax.googleapis.com/ajax/libs/jquery/1.4.3/jquery.min.js";
// Google JSAPIのURL
- var urlGglJSApi = "http://www.google.com/jsapi";
+ var urlGglJSApi = "https://www.google.com/jsapi";
/*
*--------------------------------------------------
@@ -1282,7 +1282,7 @@
nowArg.kw = getPrm(arg.kw) || "";
nowArg.res = arg.res;
nowArg.hl = arg.hl;
- var url = "http://www.google.com/complete/search?hl=" + nowArg.hl + "&q=" + nowArg.kw + "&output=toolbar";
+ var url = "https://www.google.com/complete/search?hl=" + nowArg.hl + "&q=" + nowArg.kw + "&output=toolbar";
// コールバック処理の実行
if (nowArg.kw != "" && nowArg.res instanceof Function) {
View
@@ -3,8 +3,8 @@ window['google'] = {};
}
if (!window['google']['loader']) {
window['google']['loader'] = {};
-google.loader.ServiceBase = 'http://www.google.com/uds';
-google.loader.GoogleApisBase = 'http://ajax.googleapis.com/ajax';
+google.loader.ServiceBase = 'https://www.google.com/uds';
+google.loader.GoogleApisBase = 'https://ajax.googleapis.com/ajax';
google.loader.ApiKey = 'notsupplied';
google.loader.KeyVerified = true;
google.loader.LoadFailure = false;
View
@@ -21,7 +21,8 @@
"clipboardRead",
"clipboardWrite",
"storage",
- "http://www.google.com/"
+ "http://www.google.com/",
+ "https://www.google.com/"
],
"content_scripts": [
{
@@ -67,5 +68,6 @@
"lib/dicts/wa2.txt",
"lib/dicts/ya2.txt",
"lib/dicts/za2.txt"
- ]
+ ],
+ "content_security_policy": "script-src 'self' https://www.google.com; object-src 'self'"
}

0 comments on commit dd4996b

Please sign in to comment.