Mastering
Content-Security-Policy
Become a master of Content-Security-Policy or CSP. This course is designed to rapidly take you through many of the common use cases of CSP.
The Mastering Content-Security-Policy (CSP) training course is still under development, but you can signup to be notified once it is ready below:
Who is this course for?
This course is designed for web developers or security professionals that want to get up to speed on Content-Security-Policy or CSP
Sign up for early access
Course Outline
- Introduction to CSP
- Understanding HTTP Headers
- Getting Started with CSP
- Source Lists
- Controlling JavaScript with script-src
- Controlling CSS with style-src
- Loading images with img-src
- Restricting script initiated HTTP requests with connect-src
- Fetch Directives and the default-src
- Navigation Directives
- Strict CSP using strict-dynamic
- Document Directives
- Reporting
The above CSP training class outline is tentative and subject to change.
CSP Developer Field Guide
Want to learn the ins and outs CSP? Grab a copy of the CSP Developer Field Guide. It's a short and sweet guide to help developers get up to speed quickly.
Grab a Copy
Struggling to stay on top of security advisories?
Advisory Week is a weekly roundup of all the security advisories published by the major software vendors.