CSP Nonce Demo
This example demonstrates the CSP protection offered by Wicket. In a modern browser, you will see 2 reports sent back to the application about CSP violations.
This text should be replaced: fail
This text should not be replaced: success
This text should not be red
This text should be green
Click a button above to replace this text
This text will stay black even though color:red is added by the button above
Click Me count: 0
Results could be different in legacy browsers such as IE. In modern browsers you will experience a few JavaScript errors telling about refused resources.