Can CORS be used when writing a Google Chrome extension?
I saw this, http://developer.chrome.com/extensions/contentSecurityPolicy.html
And I tried to insert this into the manifest "content_security_policy": "script-src 'self' https://twitter.com/ ; object-src 'self'",
but an ajax request fails, XMLHttpRequest cannot load https://twitter.com/ . Chrome source extension: // olimhkjfpndfhdopbneamnekfalckinc not allowed Access-Control-Allow-Origin.
cross-origin Ajax Twitter, Twitter :
... "permissions": [ "*://*.twitter.com/*" ], ...
Chrome 73, . ( .) , , , googleapis.com .
. 2 " " :
https://www.chromium.org/Home/chromium-security/extension-content-script-fetches
- console.log(), " " Chrome, , .
console.log()
. , - .