Content Security Policy Generator
Generate Content-Security-Policy headers to protect against XSS and injection attacks
Result
HTTP Header
Content-Security-Policy: default-src 'self'; upgrade-insecure-requests; block-all-mixed-contentMeta Tag
<meta http-equiv="Content-Security-Policy" content="default-src 'self'; upgrade-insecure-requests; block-all-mixed-content">Raw Policy
default-src 'self'; upgrade-insecure-requests; block-all-mixed-contentSecurity NotesNo security warnings