Skip to content

csproNonce

Aidan Woods edited this page Jul 16, 2017 · 2 revisions

Description

string csproNonce ( string $friendlyDirective )

An alias for ->cspNonce with reportOnly set to true. Make sure not to use nonces where the content given the nonce is partially of user origin! This would allow an attacker to bypass the protections of CSP!

Clone this wiki locally