The HTTP Content-Security-Policy (CSP) trusted-types
Experimental
directive instructs user agents to restrict the creation of Trusted Types policies - functions that build non-spoofable, typed values intended to be passed to DOM XSS sinks in place of strings....consists only of alphanumeric characters, or one of -#=_/@.% . A star...