2016-03-26 UTC
# tantek either they are serving your assetts from *their* domain (which is *very* risky, because then your scripts can operate from their security context, e.g. your scripts can grab THEIR session cookies), OR they are serving your assetts from *your* domain in which case you should see a different referer