Skip to content

Header: Content Security Policy

Ryan Parman edited this page Jun 14, 2024 · 5 revisions

Overview

The Content-Security-Policy HTTP response header allows website administrators to control resources the user agent is allowed to load for a given page. It will enforce the policy, and send reports back to the URLs defined with the report-uri or report-to directives. This helps guard against cross-site scripting attacks (Cross-site scripting).

See Content Security Policy (CSP) for more information.

References

Clone this wiki locally