• Resolved maryb1

    (@maryb1)


    Hello,

    Is there a way to set up Content Security Policy for reporting-only purposes? I do see the fields Report Mode Only and Report URL, but that seems to be for the HTTP Public Key Pinning section, if I understand correctly.

    Thank you for your time.

    Mary

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Contributor Marko Vasiljevic

    (@vmarko)

    Hello @maryb1
    Thank you for your inquiry and I am happy to help.

    Yes, that is correct, that can only be set in the HTTP Public Key Pinning section and the public key is required and represents an SPKI fingerprint. This pin is any public key within your current certificate chain.
    Thanks!

    Thread Starter maryb1

    (@maryb1)

    Ok, thank you. Is there a plan to enable setting up Content Security Policy for reporting-only purposes in the future?

    Plugin Contributor Marko Vasiljevic

    (@vmarko)

    Hello @maryb1
    No, not on a roadmap but I’ll make sure to talk to the devs and see if there are any plans for this.
    Thanks!

Viewing 3 replies - 1 through 3 (of 3 total)

The topic ‘Content Security Policy for reporting only’ is closed to new replies.