Question: Is there anyway to configure content security policy to allow any third party scripts but disallow inline/eval? I have some third party marketing/analytics scripts that has to be added and removed regularly. I would like to secure the page ...
Question: The issue: When I try to remove unsafe-inline source for script-src CSP my Angular webapp does not work anymore. What is the root cause of this issue ? When using SCSS in Angul[email protected]+, Angular add a property onload on ...