Remediation Steps
Follow the steps below to remediate this finding on Drupal.
Install and enable the Security Kit (SecKit) module:
composer require drupal/seckit drush en seckitNavigate to Admin > Configuration > System > Security Kit.
Under the "Content Security Policy" section, enable CSP and define your policy directives.
Save the configuration.