Item logo image for Always Disable Content-Security-Policy

Always Disable Content-Security-Policy

Item media 1 screenshot

Overview

Always Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.

This is a fork of Phil Grayson's extension with the only difference being that this one disables the headers by default. Original: https://chrome.google.com/webstore/detail/disable-content-security/ieelmcmcagommplceebfedjlakkhpden Use at your own risk. Disables the current page's Content Security Policy. Useful when testing what resources a new third-party tag includes onto the page. Click the extension icon to re-enable CSP headers. Click the extension icon again to disable CSP headers. Use this only as a last resort. Disabling CSP means disabling features designed to protect you from cross-site scripting. Prefer to use report-uri which instructs the browser to send CSP violations to a URI. That allows you keep CSP enabled in your browser but still know what got blocked. https://report-uri.com is a free tool that gives you a web interface to inspect CSP violations on your site.

3.8 out of 517 ratings

Google doesn't verify reviews. Learn more about results and reviews.

Review's profile picture

DJ ShastriSep 26, 2024

Does exactly what it says it will do.

Review's profile picture

hailong huJul 30, 2024

Very effective

Review's profile picture

Jordan EmbryMar 5, 2024

Only works when I disable then enable and refresh. Doesn't always disable when I want it to. Should be a easy fix. If there was a way to always enable then disable on every refresh it would work as intended.

1 out of 2 found this helpful

Details

  • Version
    1.0.7
  • Updated
    January 10, 2020
  • Size
    13.2KiB
  • Languages
    2 languages
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

The developer has not provided any information about the collection or usage of your data.
Google apps