Content Security Policy (CSP)

ruberto.andrea
1 Posts
ruberto.andrea posted this 15 May 2021
Ask a Question

Hello,

Content Security Policy (CSP) is important to detect and mitigate certain types of attacks, including Cross Site Scripting (XSS) and data injection attacks.

However, html code generated by NicePage may contain unsafe inline styles and other elements which become a problem when using content security policy headers, e.g. <meta http-equiv content>. Many security exceptions need to be added (reducing the level of protection), or some html parts need to be rewritten by moving styles into css or making other modifications.

Are you going to address this security issue in the near future?

Cheers,

A.

Hello, Content Security Policy (CSP) is important to detect and mitigate certain types of attacks, including Cross Site Scripting (XSS) and data injection attacks. However, html code generated by NicePage may contain unsafe inline styles and other elements which become a problem when using content security policy headers, e.g. &lt;meta http-equiv content&gt;. Many security exceptions need to be added (reducing the level of protection), or some html parts need to be rewritten by moving styles into css or making other modifications. Are you going to address this security issue in the near future? Cheers, A.
Vote to pay developers attention to this features or issue.
1 Reply
Order By: Standard | Newest
Support Team
Support Team posted this 17 May 2021

Hi Andrea,

Thanks for your message, we'll consider your suggestion for our wishlist.

...................................................
Sincerely,
Hella
Nicepage Support Team

Please subscribe to our YouTube channel: http://youtube.com/nicepage?sub_confirmation=1
Follow us on Facebook: http://facebook.com/nicepageapp

Hi Andrea, Thanks for your message, we'll consider your suggestion for our wishlist. ................................................... Sincerely, Hella Nicepage Support Team Please subscribe to our YouTube channel: http://youtube.com/nicepage?sub_confirmation=1 Follow us on Facebook: http://facebook.com/nicepageapp
You must log in or register to leave comments