An experimental Content Security Policy feature detection API just landed in today's Chrome Canary channel. Things have changed a bit from the initial proposal made back in May, and I think the current implementation is a good deal better than what I'd originally proposed.

The current working draft of the API's spec is available at, and comments are very welcome on the public-webappsec@ mailing list (

