Using Angular 16, we can specify a CSP_NONCE injection token to be used in all inline styles and scripts (as described here). In this example, it gets the nonce from globalThis.myRandomNonceValue but I have no idea how that would be provided from the server.
For further actions, you may consider blocking this person and/or reporting abuse
Top comments (0)