CSP Generator and Pasted-Policy Checker
Draft a Content Security Policy from a strict baseline.
Draft and inspect a pasted Content Security Policy.
13 tools in this part of the catalogue.
Draft a Content Security Policy from a strict baseline.
Inspect pasted HTTP headers and check security fields.
Unfold message headers and read SPF, DKIM and DMARC.
Draft and explain an explicit CORS policy.
Explain cookie attributes while masking values.
Review declared OAuth client redirects and settings.
Model referrer disclosure for entered URLs.
Model selected feature delegation to one iframe.
Group supplied CSP reports with URL detail omitted.
Review supplied mail-auth records without DNS.
Review supported SSH client options offline.
Review an entered role and permission matrix.
Compare declared SBOM components and versions.