Full CSP (content-security-policy)

x-nonce header:
6e9906ca-8e22-4e85-a36b-f558c67f22a5
content-security-policy header:
default-src 'self'; script-src 'report-sample' 'self' 'nonce-6e9906ca-8e22-4e85-a36b-f558c67f22a5' 'strict-dynamic'; style-src 'report-sample' 'self' 'nonce-6e9906ca-8e22-4e85-a36b-f558c67f22a5'; connect-src 'self' *.vercel-insights.com plausible.io; font-src 'self' data:; img-src 'self' data:; worker-src 'self' blob:; frame-ancestors 'none'; form-action 'self'

Full CSP | Report Only | Pages router example