Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

can you tldr it? just one little meta tag defeats google's ad services? why dont we all slap it on our html templates?


This seems to be allowing unsafe script injection from ONLY certain whitelisted urls, presumably excluding the url globs required for the ads. Haven't tested it, and not sure the full extent of pshc's sibling response either.




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: