Always Disable Content-Security-Policy
18 个评分
)概述
Always Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.
This is a fork of Phil Grayson's extension with the only difference being that this one disables the headers by default. Original: https://chrome.google.com/webstore/detail/disable-content-security/ieelmcmcagommplceebfedjlakkhpden Use at your own risk. Disables the current page's Content Security Policy. Useful when testing what resources a new third-party tag includes onto the page. Click the extension icon to re-enable CSP headers. Click the extension icon again to disable CSP headers. Use this only as a last resort. Disabling CSP means disabling features designed to protect you from cross-site scripting. Prefer to use report-uri which instructs the browser to send CSP violations to a URI. That allows you keep CSP enabled in your browser but still know what got blocked. https://report-uri.com is a free tool that gives you a web interface to inspect CSP violations on your site.
3.9 星(5 星制)18 个评分
Google 不会核实评价。 详细了解结果和评价。
详情
- 版本1.0.7
- 上次更新日期2020年1月10日
- 大小13.2KiB
- 语言2 种语言
- 非交易者该开发者尚未将自己标识为交易者。欧盟地区消费者须知:消费者权利可能不适用于您与该开发者达成的合约。