Analyze existing Content-Security-Policy headers and flag risky directives.
This tool requires JavaScript to run.