Content security policies (CSP) are essential for web developers, allowing them to specify directives that control the sources of content loaded on their pages. While CSP3 introduces enhancements like deeper specifications for hashes, challenges remain, particularly in addressing payload security. As browsers evolve, the need for robust security measures around new functionalities, such as WebAssembly and IndexedDB, becomes increasingly critical.