csp-doctor
MITLint a Content-Security-Policy for XSS holes — locally, no website. Flags 'unsafe-inline', 'unsafe-eval', wildcards, missing object-src/base-uri/frame-ancestors, and allowlisted hosts known to bypass CSP (JSONP/AngularJS) — nonce/hash/strict-dynamic aware
100
Security score
0 known advisories in v0.1.1
Weekly downloads
1
Unpacked size
287.3 kB
Dependencies
2
Last publish
1 month ago
Security advisories
No known vulnerabilities affect v0.1.1.
Downloads — last 30 days
20 total▼ 83.3% vs prior week
Jul 4Aug 2