Skip to main content

csp-report-only-rollout

Roll out Content-Security-Policy-Report-Only safely: report-uri/report-to, owned collectors, violation triage, noise filtering, gradual directive tightening, canary then enforce. Use when staging CSP without blocking production, cutting report floods, migrating report-only to Content-Security-Policy, or planning dual-header CSP rollouts — hand DOM XSS proof to xss-cross-site-scripting and Trusted Types adopt to trusted-types-adoption; CSP bypass research to content-security-policy-bypass.

Jump to install

Source facts

Repository
tomysh1337/openstarry-code
Last source activity
August 17, 2026 at 13:35
Detected SKILL.md language
English
Stars
3
Forks
0

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.