Skip to content
CodeWiki
Practice
Paths
Tracks
Cheatsheets
Playground
Glossary
AI era
Search
⌘K
English
English
Chinese
Practice
Paths
Tracks
Cheatsheets
Playground
Glossary
AI era
English
English
Chinese
Practice
/
Quiz
/
Security
/
Web security fundamentals
Which statement best describes Content Security Policy in an XSS defense?
from Web security fundamentals
Node 24
intermediate
2 min
Which statement best describes Content Security Policy in an XSS defense?
It is an additional browser-enforced layer; safe sinks and contextual encoding still address the root cause.
It makes every use of innerHTML safe when default-src is set.
It authorizes users to access server-side objects.
One fixed nonce can be reused by every response indefinitely.
Check
Ask AI about this kata
Report an error
previous kata
What does a correctly configured CORS policy primarily control?
Quiz
next kata
What does this program print on its second line?
Predict the output
A new version is available
Reload