CSP builder and validator CSP builder and validator

Build Content-Security-Policy online

Compose a CSP header from common directives and immediately review risky values such as wildcards and unsafe script options.

Use the result as a starting point and test it in report-only mode before enforcing it on production pages.

The tool runs directly in the browser and is ready for quick checks without installing software.
Input can be cleared and recalculated immediately, which is useful for repeated small tasks.
Use fullscreen mode when you need more space for long text, structured data or large result blocks.
Copy buttons are available on generated output so results can be reused in code, documents or support chats.
Most operations are deterministic: the same input and options produce the same output.
For sensitive content, prefer local browser tools and review the result before sharing it further.