Just as the title states, do non-web based email clients (e.g. Microsoft Outlook) respect CSP HTTP headers?
Specifically, I want to prevent hotlinking of images hosted on my domain within HTML emails with these HTTP headers:
Cross-Origin-Resource-Policy: same-origin
Vary: Origin