[FAQ] Which policies should I create?
bnomei opened this issue · comments
Bruno Meilick commented
Question:
Which policies should I create?
Answer:
The default values for this plugin are a good start and in most cases you just need to define some additional policies. Just make sure not to weaken the policies by enabling unsafe-inline
etc. Try finding the secure way to do these things.
- Record what you use: https://addons.mozilla.org/en-US/firefox/addon/laboratory-by-mozilla/
- Generate full list: https://www.cspisawesome.com/
- Set it up with this plugin
- Validate if it works: http://securityheaders.com/