Skip to content
TORNLIFE More

CSP issues

Started by Over9K [3666945] on in Tools & Userscripts.

0 replies · 47 views · thread synced · 5 days ago · View on torn.com
About this thread

Posts archived: 1 / 1 posts (100%) · the total is Torn's reply count + the opening post at the last fetch

Counted by TornLife from the archived posts.

Archived posts
1
Discussion span
→
People posting
1
Likes on archived posts
0
Authority score
32 / 100
Historical score
12 / 100
Story score
19 / 100
Engagement score
33 / 100
Over9K [3666945]

I’ve been experimenting with writing some lightweight userscripts to explore Torn’s frontend behavior, purely for personal learning and UI enhancements (no automation or botting, of course).

I ran into an issue where certain pages seem to block userscripts entirely due to Content-Security-Policy (CSP) restrictions. Even when using Tampermonkey (Firefox) or wieldmonkey (Chrome), the browser blocks the script and throws errors like:

 

Content-Security-Policy: The page’s settings blocked an inline script (script-src-elem) from being executed because it violates the following directive: “script-src '*****-a2fc347df1ad1c6523a5285878bbdb72' '*****-

 

If I manually paste the exact same code into the DevTools console, it works just fine — so the problem isn’t the logic, just how the script is injected.