Skip to Main Content

APEX

Announcement

For appeals, questions and feedback about Oracle Forums, please email oracle-forums-moderators_us@oracle.com. Technical questions should be asked in the appropriate category. Thank you!

Content security policy header

flaviocJul 31 2024

Hi,

I am trying to understand the impact on APEX in case a customer required the implementation of Content Security Policy Headers for all the web applications in its domain.
In particular I'd like to understand the limitations of these policies, because there is a significant portion of inline JavaScript which is automatically generated by APEX and I suspect that it would be difficult to fulfill certain requirements if the customer was to choose some restrictive settings.

I am really no expert on this topic, has anyone any experience on this subject, in particular any of Oracle APEX development team can shed some thoughts on this subject?

Thank you.

Flavio

Comments
Post Details
Added on Jul 31 2024
2 comments
1,433 views