Build Content Security Policy headers visually with live preview and presets.
Build Content Security Policy (CSP) headers visually. Select directives, add source allowlists, toggle common source keywords like 'self', 'none', and 'unsafe-inline', and get a ready-to-use CSP header string plus an HTML meta tag. Includes Strict, Moderate, and Permissive presets. Helps protect your web app against XSS and data injection attacks.
Presets
Directives
upgrade-insecure-requestsblock-all-mixed-content