Gareth Heyes
banner
garethheyes.co.uk
Gareth Heyes
@garethheyes.co.uk
javascript:/*--></title></style></textarea></script></xmp><svg/onload='-/"/-/onmouseover=1/-/[*/[]/-alert(1)//'>

https://garethheyes.co.uk/#latestBook
You can install this Custom Action via the Extensibility Helper extension, or copy+paste from here: github.com/PortSwigger/...
bambdas/CustomAction/CSPBypass.bambda at main · PortSwigger/bambdas
Bambdas collection for Burp Suite Professional and Community. - PortSwigger/bambdas
github.com
December 16, 2025 at 3:31 PM
Yes, I said "CSP policy". I'll leave you to guess whether I deliberately said "CSP Policy" or I didn't want to re-record it.
December 16, 2025 at 3:31 PM
BTW you can make it better without a further HTTP request. Stick a data url in the Link header :D
November 9, 2025 at 9:54 PM
Oh cool
November 7, 2025 at 6:04 PM