Full CSP (content-security-policy-report-only)

x-nonce header:
bf67d31e-0dcd-4ed2-b1dd-707190136aec
content-security-policy-report-only header:
default-src 'self'; script-src 'report-sample' 'self' 'nonce-bf67d31e-0dcd-4ed2-b1dd-707190136aec' 'strict-dynamic'; style-src 'report-sample' 'self' 'nonce-bf67d31e-0dcd-4ed2-b1dd-707190136aec'; connect-src 'self' *.vercel-insights.com plausible.io; font-src 'self' data:; img-src 'self' data:; worker-src 'self' blob:; frame-ancestors 'none'; form-action 'self'

Full CSP | Report Only | Pages router example