Welcome to the CSP Learning Lab

This page includes several types of third-party content to test our Content Security Policy. After setting the CSP header, check the browser console to see the violation reports.


1. Embedded YouTube Video (iframe)


2. Third-Party Image

Placeholder Image

3. Third-Party Script from CDN

This page loads jQuery from Google's CDN. Check the browser console to see if it loaded.

Divya's Lab

Welcome to Divya's Lab 🎉