Skip to content

Content-Security-Policies CSP #1942

Closed Answered by treelistener
treelistener asked this question in General
Discussion options

You must be logged in to vote

Thank you very much for your thoughts and tips as well as the collection of links. My question was precisely because I wanted to know more about how others use this and whether at all.

On the one hand, I fully agree with you about CSP, especially since Publli creates static websites. I also share your view that the goal and purpose of a website, especially in the business environment, should not only be presence, but also a return flow of the resources used.
I could imagine using CSP for business use with Publii. This is because Javascripts or SVGs in particular could be used with XSS in a way that you might not want, perhaps. For example, I cannot judge in all parts what the JS used in P…

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
0 replies
Answer selected by treelistener
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants