You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
This isn't an issue but more an idea. When testing the CSP module, I found it checks a few common CSP directives. Then I stumbled upon this website and thought it would be great to inspire ourselve from it in order to complete the module.
A good first issue would be to detect if the CSP directives exists or are correctly spelled, then see with this website if we can add some more risky directives to detect.
The text was updated successfully, but these errors were encountered:
This isn't an issue but more an idea. When testing the CSP module, I found it checks a few common CSP directives. Then I stumbled upon this website and thought it would be great to inspire ourselve from it in order to complete the module.
A good first issue would be to detect if the CSP directives exists or are correctly spelled, then see with this website if we can add some more risky directives to detect.
This got me stumped as i had it as 'self'. I tried the host url too. Became nuts running wapiti over and over ... Thankfully the site above suggested 'none' as the correct value.
This isn't an issue but more an idea. When testing the CSP module, I found it checks a few common CSP directives. Then I stumbled upon this website and thought it would be great to inspire ourselve from it in order to complete the module.
A good first issue would be to detect if the CSP directives exists or are correctly spelled, then see with this website if we can add some more risky directives to detect.
The text was updated successfully, but these errors were encountered: