paragonie/csp-builder
Build Content-Security-Policy headers from a JSON file (or build them programmatically)
PHPMIT
Issues
- 0
Calling disableOldBrowserSupport can lead to un-expected regressions with frame-src directives
#75 opened by fredericgboutin-yapla - 1
`script-src-elem`, `script-src-attr`, `style-src-elem` and `style-src-attr` are not supported
#72 opened by internalsystemerror - 3
report-uri is encoded in to unuseable string
#62 opened by Firesphere - 0
Integrate or document report-to
#63 opened by davidsneighbour - 1
report-uri gets wrongly encoded
#60 opened by cleptric - 2
Support for Feature-Policy header?
#36 opened - 1
- 1
Add support for 'unsafe-hashes' policy
#58 opened by LeisureLarry - 1
Support manifest-src directive
#57 opened by strider72 - 1
- 0
- 1
My browser keeps ignoring this.
#29 opened by Nenglish7 - 1
Suggestion: check for duplicate addSource
#23 opened by strider72 - 9
DOCUMENTATION?????????????
#18 opened by strider72 - 1
Save to JSON
#39 opened by Firesphere - 0
Add support for 'report-sample' directive
#46 opened by MrPropre - 1
- 1
Add support for https: scheme
#49 opened by MrPropre - 1
- 2
- 3
report-uri deprecated
#27 opened by Nenglish7 - 0
missing self in readme example
#41 opened by bnomei - 0
.htaccess support for headers
#38 opened by Firesphere - 5
"support older browsers" nonce fix
#31 opened by strider72 - 2
what is the use for "type" policies param ?
#32 opened by ncou - 1
Add worker-src
#24 opened by strider72 - 0
Add require-sri-for directive.
#25 opened by Zegnat - 5
How to add strict-dynamic ?
#33 opened by strider72 - 7
- 3
Allow adding "blob" as source in JSON
#17 opened by daniplaninc - 6
Invokable Extension
#8 opened by geggleto - 2
Functions and classes starting with a backslash
#20 opened by gszy - 5
Add data: uris
#16 opened by gdhnz - 6
ambiguity: PSR-7 Message
#7 opened by geggleto - 13
- 2
- 4
- 1
- 1