CSPBlocker

CSPBlocker

Block certain web features to improve security, privacy and performance.

What is CSPBlocker?
CSPBlocker is a Firefox add-on that enables users to gain control over their browser by blocking unnecessary web features. It blocks web fonts, objects (Java/Flash), reporting APIs, and workers, enhancing security, privacy, and performance. Future updates will allow customization of blocked features and exceptions for specific websites.
Merlin
Stats
Users: 25 ▼ -1
Rating: 4.00 (2)
Version: 0.0.5 (Last updated: 2023-10-18)
Creation date: 2020-05-26
Weekly download count: 5
Firefox on Android: Yes
Risk impact: High risk impact
Risk likelihood: Moderate risk likelihood
Manifest version: 2
Permissions:
  • webRequest
  • webRequestBlocking
  • storage
  • <all_urls>
Size: 12.67K
URLs: Website
Stats date:

Chrome-Stats Rank

Other platforms

Not available on Chrome
Not available on Edge
Want to check extension ranking and stats more quickly for other Firefox add-ons? Install Chrome-Stats extension to view Chrome-Stats data as you browse the Firefox Browser Add-ons.
Chrome-Stats extension
Merlin
Summary

The goal of this extension is to gain back control over your browser by blocking web features a website doesn't need.

For now, it supports these features:

Web Fonts This blocks any custom web fonts a website may ask for. It's blocked by adding an additional content-security-policy with font-src set to 'none'.

Objects (Java / Flash) This blocks any object a website might try to load. This includes java and flash applets. Again this is achieved with a content-security-policy, by setting object-src to 'none'.

Reporting apis This blocks any reporting a website might want to do. This can include netwerk issues, content security policy violations, and more. We achieve this by removing the report-to and content-security-policy-report-only headers from any sub/main frame requests. In addition, any content security policy report gets blocked and never sent to the websites server.

Workers This blocks any workers a website may ask for. This can be used to block serviceworkers, which can be used to spam the user with notifications, keep running in the background and more. This is blocked by setting worker-src to 'none' in the content-security-policy header.

See more
User reviews
by MarsSeed, 2023-11-23
View all user reviews
Safety
Risk impact

CSPBlocker is risky to use as it requires a number of sensitive permissions that can potentially harm your browser and steal your data. Exercise caution when installing this add-on. Review carefully before installing. We recommend that you only install CSPBlocker if you trust the publisher.

Risk likelihood

CSPBlocker is probably trust-worthy. Prefer other publishers if available. Exercise caution when installing this add-on.

Upgrade to see risk analysis details