Item logo image for Always Disable Content-Security-Policy

Always Disable Content-Security-Policy

3.9(

18 ratings

)
ExtensionDeveloper Tools10,000 users
Item media 1 screenshot

Overview

Always Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.

This is a fork of Phil Grayson's extension with the only difference being that this one disables the headers by default. Original: https://chrome.google.com/webstore/detail/disable-content-security/ieelmcmcagommplceebfedjlakkhpden Use at your own risk. Disables the current page's Content Security Policy. Useful when testing what resources a new third-party tag includes onto the page. Click the extension icon to re-enable CSP headers. Click the extension icon again to disable CSP headers. Use this only as a last resort. Disabling CSP means disabling features designed to protect you from cross-site scripting. Prefer to use report-uri which instructs the browser to send CSP violations to a URI. That allows you keep CSP enabled in your browser but still know what got blocked. https://report-uri.com is a free tool that gives you a web interface to inspect CSP violations on your site.

3.9 out of 518 ratings

Google doesn't verify reviews. Learn more about results and reviews.

Details

  • Version
    1.0.7
  • Updated
    January 10, 2020
  • Size
    13.2KiB
  • Languages
    2 languages
  • Non-trader
    This developer has not identified itself as a trader. For consumers in the European Union, please note that consumer rights do not apply to contracts between you and this developer.

Privacy

The developer has not provided any information about the collection or usage of your data.
Google apps