🔒 CSP Evaluator
Paste CSP Header
default-src 'self'; script-src 'self' 'unsafe-inline' https:; style-src 'self' 'unsafe-inline'; img-src * data:; object-src 'none'
Evaluate
Findings