All Tools
Search tools...
⌘K
English
Home
Web & SEO Tools
CSP Header Builder
CSP Header Builder
Build Content Security Policy headers
Browser Processing
Your data never leaves your browser
CSP Directives
default-src
'self'
'none'
'unsafe-inline'
'unsafe-eval'
script-src
'self'
'none'
'unsafe-inline'
'unsafe-eval'
style-src
'self'
'none'
'unsafe-inline'
img-src
'self'
data:
blob:
font-src
connect-src
frame-src
Additional Options
upgrade-insecure-requests
block-all-mixed-content
report-uri
CSP Header
Copy
Content-Security-Policy: default-src 'self'; script-src 'self'; style-src 'self'; img-src 'self'
Meta Tag
Copy
<meta http-equiv="Content-Security-Policy" content="default-src 'self'; script-src 'self'; style-src 'self'; img-src 'self'">
Related Tools
Open Graph Generator
Generate Open Graph meta tags
Twitter Card Generator
Generate Twitter Card meta tags
Schema.org Generator
Generate JSON-LD structured data
CORS Config Generator
Generate CORS configuration