Use authorized targets
Run network checks only against systems you own or have explicit permission to assess.
DEVELOPER · FREE TOOL
Build a practical Content-Security-Policy header from safe presets.
PROCESSED IN YOUR BROWSER
Values stay in this browser tab and are not sent to the server.
Review the policy in Report-Only mode before enforcing it.
SAFE USE
Run network checks only against systems you own or have explicit permission to assess.
Never paste passwords, access tokens, private keys or confidential customer data into diagnostic tools.
Automated results are a starting point. Validate changes in a staging environment before production.
Certificates, DNS records and web configurations change, so repeat important checks after deployments.