CSP Evaluator is a small tool that allows developers and security experts to check if a Content Security Policy (CSP) serves as a strong mitigation against cross-site scripting attacks. Reviewing CSP policies is usually a very manual process and most developers are not aware of CSP bypasses. CSP Evaluator checks are based on a large-scale empirical study and are aimed to help developers to harden their CSP. This tool is provided only for the convenience of developers and Google provides no guarantees or warranties for this tool.
You can Follow the below Step By Step procedure to install the CSP Evaluator Chrome Extension to your Chrome Web browser.
It is the CSP Evaluator Chrome extension download link you can download and install Chrome Browser.
Install CSP headers on arbitrary websites
Automatically generate content security policy headers online for any website.
A Chrome Extension built to check the presence of embedded security headers.
Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.
Measure metrics for a healthy site
Easy debugging, profiling and tracing extension for Xdebug
Always Disable Content-Security-Policy for web application testing. When the icon is colored, CSP headers are disabled.
Tiny vulnerability scanner based on vulners.com vulnerability database. Passively scan websites while you surf internet!
OWASP Penetration Testing Kit
Modify the Content Security Policy of web pages.