New metrics to track report and enforce CSPs#6369
New metrics to track report and enforce CSPs#6369labkey-jeckels wants to merge 1 commit intodevelopfrom
Conversation
|
I've added similar metrics in my PR: #6359 I'm including only CSP version, but I could easily add the full CSP. At a minimum, let's get my PR merged and iterate on that. |
Great, thanks for the note. I won't do anything with this PR for the moment. Ultimately, I'm hoping for an approach that helps us understand which on-premise deployments have a CSP too. |
Yep, me too. I'll look at adding the full CSP to my thing and we can go from there. Feel free to review, if you want. |
Rationale
Let's keep track of the Content Security Policies that are in use
Changes
modules.API.contentSecurityPolicy.enforceandmodules.API.contentSecurityPolicy.report