Test Content Security Policy (OTG-CONFIG-008)

This article is part of the new OWASP Testing Guide v4.
Brief Summary

Content Security Policy (CSP) is an W3C specification instructs the client browser (using a directive) from which location and/or which type of resources are allowed to be loaded.

Description of the Issue

Black Box testing and example

