Disable Content-Security-Policy

#3.66 / 87 rate

Disable Content-Security-Policy

60,000 users

2020-05-06

Phil Grayson

Extension Information

5 star
47%
4 star
6%
3 star
7%
2 star
13%
1 star
26%

Supported Languages

Permissions

Description

Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.

Use at your own risk. This disables the Content-Security-Policy header for a tab. Use this when testing what resources a new third-party tag includes onto the page.

Click the extension icon to disable Content-Security-Policy header for the tab. Click the extension icon again to re-enable Content-Security-Policy header.

Use this only as a last resort. Disabling Content-Security-Policy means disabling features designed to protect you from cross-site scripting. Prefer to use report-uri which instructs the browser to send CSP violations to a URI. That allows you keep Content-Security-Policy enabled in your browser but still know what got blocked. https://report-uri.com is a free tool that gives you a web interface to inspect CSP violations on your site.

Reviews

Alejandro Vargas
Alejandro Vargas

He necesitado utilizar esta extensión para poder usar la página de recarga de tarifas de Masmovil: https://www.masmovil.es/recarga

hailong hu
hailong hu

Very effective

en1ight
en1ight

29 Jul 2024: its working. For those who messaged its not working: make sure you are using it correctly (you see "blocked:csp" agaist your request in network tab)

Similar extensions

Always Disable Content-Security-Policy
Always Disable Content-Security-Policy

Unknown

Content Security Policy Override
Content Security Policy Override

https://rufflewind.com

CORS Unblock
CORS Unblock

balvin.perrie

Ignore X-Frame headers
Ignore X-Frame headers

Guillaume Ryder

Content Security Policy (CSP) Generator
Content Security Policy (CSP) Generator

https://csper.io

Cross Domain - CORS
Cross Domain - CORS

Mai Tan

Disable Content Security Policy
Disable Content Security Policy

Mywait

Requestly - Intercept, Modify & Mock HTTP Requests
Requestly - Intercept, Modify & Mock HTTP Requests

https://requestly.com

Resource Override
Resource Override

Kyle Paulsen

Allow CORS: Access-Control-Allow-Origin
Allow CORS: Access-Control-Allow-Origin

Muyor

CSP Evaluator
CSP Evaluator

Lukas Weichselbaum

Allow CSP: Content-Security-Policy
Allow CSP: Content-Security-Policy

Muyor