
Some resources are now loaded udependently of the source domain only via secure channels (https). This can significantly reduce the risk and impact of cross-site scripting attacks in modern browsers. This also offers the advantage that, for example, "old" inline scripts do not have to be rewritten outside their own domain.