The HTTP Content-Security-Policy (CSP) default-src directive serves as a fallback for the other CSP fetch directives. For each of the following directives that are absent, the user agent looks for the default-src directive and uses this value for it:...icy: default-src <source-expression-list>; This directive may...quotes are mandatory. <source-expression-list> A space-separated list...