Those Boring Tools
Security ToolsPrivate by design

CSP Header Analyzer

Paste an existing Content-Security-Policy header to see it broken down by directive, with common risky patterns flagged.

How to use this tool

  1. 1Paste your CSP header.
  2. 2See each directive broken down.
  3. 3Review flagged risky patterns.

Frequently asked questions

Is this a complete CSP security audit?+

No — it flags a few commonly cited risky patterns (like unsafe-inline) as a starting point, not a substitute for a full security review.

Keep the boring tools boring.

If this saved you five minutes of nonsense, you can help keep the free tools running.

Buy the toolbox a coffee