---
title: Content Security Policy
description: Content Security Policy is an HTTP response header that tells the browser which sources may load scripts, styles, and other content, reducing the impact of XSS when an injection still reaches the page.
tokens: ~0
---

# Content Security Policy

undefined