-
Notifications
You must be signed in to change notification settings - Fork 20
csproNonce
Aidan Woods edited this page Jul 16, 2017
·
2 revisions
string csproNonce ( string $friendlyDirective )
An alias for ->cspNonce
with reportOnly
set to true.
Make sure not to use nonces where the content given the nonce is
partially of user origin! This would allow an attacker to bypass the
protections of CSP!