CSP Evaluator allows developers and security experts to check if a Content Security Policy (CSP) serves as a strong mitigation against cross-site scripting attacks. It assists with the process of reviewing CSP policies, which is usually a manual task, and helps identify subtle CSP bypasses which undermine the value of a policy. CSP Evaluator checks are based on a large-scale study and are aimed to
![CSP Evaluator](https://cdn-ak-scissors.b.st-hatena.com/image/square/f939c91b25cde4e17b9beb32d5c16c0e6b93ce27/height=288;version=1;width=512/https%3A%2F%2Fcsp-evaluator.withgoogle.com%2Fstatic%2Fcsp_evaluator_var.png)