Consider adding report-uri to receive reports about policy violations. Try out CSP Hero to get started.Learn more →
Consider adding form-action 'self' to allow forms to be submitted only to your own domain. Note that this directive don't fallback to default-src.Learn more →