From d385ada8530475e57f494ec4c73414b08440aa53 Mon Sep 17 00:00:00 2001 From: Jezen Thomas Date: Mon, 19 Aug 2019 20:28:27 +0200 Subject: [PATCH] Move JavaScript form submission to script block If someone wants their website to score a good grade on a security vulnerability scanner like Mozilla Observatory, they will need to enable the Content Security Policy header. When using CSP, it is possible to explicitly allow inline JavaScript in `