Skip to content
Better HN
Top
Best
Ask
Show
New
Jobs
Search
⌘K
Intro to CSP report-to and report-URI HTTP headers
(opens in new tab)
(kevinpatel.xyz)
3 points
alligatorplum
1y ago
2 comments
Save
Share
2 comments
2 comments · 1 top-level
top
newest
oldest
theandrewbailey
1y ago
· 1 in thread
I have a strict CSP with report-URI on my blog, but all the reports I get are from obscure browser extensions injecting CSS and JS into my pages.
alligatorplum
OP
1y ago
Yes that is one thing I have learned that there can be a lot of noise from these CSP violation reports. I have found that setting up some alerts for particular resources seems to help suppress some of the noise.
j
/
k
navigate · click thread line to collapse