Content Security Policy Configuration Form
Provide all required details to define a Content Security Policy (CSP) for your website or application.
Website or Application Name
*
Website URL
*
Contact Email for CSP Issues
*
example@example.com
CSP Version
*
Please Select
CSP Level 2
CSP Level 3
Other/Unknown
Policy Mode
*
Enforce (Block violations)
Report-Only (Monitor violations)
Allowed Sources for Script (script-src)
*
Self (same origin)
CDN
None (Disallow all)
Specific Domains
Allowed Sources for Styles (style-src)
*
Self (same origin)
CDN
None (Disallow all)
Specific Domains
Allowed Sources for Images (img-src)
*
Self (same origin)
Data URIs
None (Disallow all)
Specific Domains
Enable Reporting of CSP Violations?
*
Yes, enable reporting
No, do not report
Reporting Endpoint URL (if reporting enabled)
Allowed Sources for Other Directives
Connect (connect-src)
Fonts (font-src)
Media (media-src)
Frame (frame-src)
Would you like to allow inline scripts or styles?
*
Allow both inline scripts and styles
Allow only inline scripts
Allow only inline styles
Disallow both inline scripts and styles
Would you like to allow the use of 'eval' in scripts?
*
Yes, allow 'eval'
No, disallow 'eval'
Additional Notes or Exceptions (optional)
Submit Configuration
Should be Empty: