Home
About
Blog
Courses
Contact
More about Django
· Module 13 - Security hardening
13.3 Content Security Policy with django-csp
22 min
Back to the curriculum
Video coming soon
The recording for this lesson has not been published yet.
What we cover
How CSP stops many XSS attacks
django-csp middleware and directives
Nonces for inline scripts
Report-only mode and collecting reports
Written notes for this lesson are being prepared. The outline above already shows what the recording will cover.
← 13.2 HTTPS, HSTS and secure cookies
13.4 Protecting forms from abuse →
After this lesson you will
Add a CSP that blocks injected scripts
Roll out a policy without breaking the site
Module 13
13.1
The deployment checklist
13.2
HTTPS, HSTS and secure cookies
13.3
Content Security Policy with django-csp
13.4
Protecting forms from abuse
13.5
Common Django vulnerabilities