Click here to download the Blitz Browser!

WPT

wpt / worklets / animation-worklet-csp.https.html

Spec: https://html.spec.whatwg.org/multipage/worklets.html ↗

Runs: Chrome 155.0.8039.0 (wpt@508cc6a62, 2026-09-03) | Firefox 157.0a1 (wpt@508cc6a62, 2026-09-03) | Safari 251 preview (wpt@5ce815a83, 2026-08-27) | Ladybird 1.0-56c61 (wpt@8fdda8ce4, 2026-09-03) | Servo Servo 0.6 (wpt@09159dcb3, 2026-09-02) | Blitz 188486089 (wpt@a95401e4e, 2026-09-02)

View on the Blitz WPT dashboard | Open test on wpt.live | wpt.fyi

ChromeFirefoxSafariLadybirdServoBlitz
Total0/240/240/240/240/24NOT RUN
SubtestChromeFirefoxSafariLadybirdServoBlitz
A remote-origin worklet should be blocked by the script-src 'self' directive.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin script should be blocked by the script-src 'self' directive.FAILFAILFAILFAILFAIL
A remote-origin worklet importing a remote-origin script should be blocked by the script-src 'self' directive.FAILFAILFAILFAILFAIL
A remote-origin-redirected worklet should be blocked by the script-src 'self' directive.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin-redirected script should be blocked by the script-src 'self' directive.FAILFAILFAILFAILFAIL
A remote-origin worklet should not be blocked because the script-src directive specifying the origin allows it.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin script should not be blocked because the script-src directive specifying the origin allows it.FAILFAILFAILFAILFAIL
A remote-origin worklet importing a remote-origin script should not be blocked because the script-src directive specifying the origin allows it.FAILFAILFAILFAILFAIL
A remote-origin-redirected worklet should not be blocked because the script-src directive specifying the origin allows it.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin-redirected script should not be blocked because the script-src directive specifying the origin allows it.FAILFAILFAILFAILFAIL
A remote-origin worklet should not be blocked because the script-src * directive allows it.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin script should not be blocked because the script-src * directive allows it.FAILFAILFAILFAILFAIL
A remote-origin worklet importing a remote-origin script should not be blocked because the script-src * directive allows it.FAILFAILFAILFAILFAIL
A remote-origin-redirected worklet should not be blocked because the script-src * directive allows it.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin-redirected script should not be blocked because the script-src * directive allows it.FAILFAILFAILFAILFAIL
A remote-origin worklet should not be blocked by the worker-src directive because worklets obey the script-src directive.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin script should not be blocked by the worker-src directive because worklets obey the script-src directive.FAILFAILFAILFAILFAIL
A remote-origin worklet importing a remote-origin script should not be blocked by the worker-src directive because worklets obey the script-src directive.FAILFAILFAILFAILFAIL
A remote-origin-redirected worklet should not be blocked by the worker-src directive because worklets obey the script-src directive.FAILFAILFAILFAILFAIL
A same-origin worklet importing a remote-origin-redirected script should not be blocked by the worker-src directive because worklets obey the script-src directive.FAILFAILFAILFAILFAIL
An insecure-origin worklet should be blocked because of mixed contents.FAILFAILFAILFAILFAIL
An insecure-origin-redirected worklet should be blocked because of mixed contents.FAILFAILFAILFAILFAIL
A same-origin worklet importing an insecure-origin script should be blocked because of mixed contents.FAILFAILFAILFAILFAIL
A same-origin worklet importing an insecure-origin-redirected script should be blocked because of mixed contents.FAILFAILFAILFAILFAIL