SharePoint: Content Security Policy Control in Tenant Administration
- Vendor
- Microsoft
- Product
- SharePoint
- Type
- Security
- Announcement date
- 2025-04-10
- Effective date
- Date not published
- Impact
- Affected
In brief
SharePoint: Content Security Policy Control in Tenant Administration
What the source says
SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions. Tenant Administrators can also enforce browsers to only load scripts from allowed sources. This behavior can be enabled using SharePoint Online Management Shell. GA date: March CY2025 Launched General Availability Targeted Release Worldwide (Standard Multi-Tenant) GCC GCC High DoD SharePoint Desktop
Read the primary source
Choose your reading
The role changes the reading angle, not the facts, date or level of evidence.
Reading for a salesperson
Who is affected: The audience described by the Microsoft update is represented by: SharePoint: Content Security Policy Control in Tenant Administration SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions.
Why it matters: The change matters because the official source describes: SharePoint: Content Security Policy Control in Tenant Administration SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions.
Urgency: Monitor
Next action: Review affected accounts with the customer using the official announcement.
Commercial opportunities
- Use the verified change to open a scoped customer conversation.
Technical actions
- Assess whether the documented change intersects the customer's current stack.
Questions to ask the customer
- Does this documented change affect a product or workload in scope?
Risks and objections
- The official source does not establish facts beyond the quoted material.
Points to confirm
- The effective date is unknown and must be confirmed before scheduling action.
Evidence and traceability
Each excerpt is linked to the primary source and retained for verification.
- Raw capture
2026-08-29T09:22:49.319599+00:00
- Event
SharePoint: Content Security Policy Control in Tenant Administration SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions. Tenant Administrators can also enforce browsers to only load scripts from allowed sources. This behavior can be enabled using SharePoint Online Management Shell. GA date: March CY2025 Launched General Availability Targeted Release Worldwide (Standard Multi-Tenant) GCC GCC High DoD SharePoint Desktop
source - Product SharePoint
SharePoint: Content Security Policy Control in Tenant Administration SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions. Tenant Administrators can also enforce browsers to only load scripts from allowed sources. This behavior can be enabled using SharePoint Online Management Shell. GA date: March CY2025 Launched General Availability Targeted Release Worldwide (Standard Multi-Tenant) GCC GCC High DoD SharePoint Desktop
source - Insight a salesperson
SharePoint: Content Security Policy Control in Tenant Administration SharePoint Online Tenant Administrators can now allow script sources for modern pages in SharePoint sites. This is particularly useful in scenarios where modern pages have custom code that load scripts (e.g. TypeScript code) from external sources like CDN. SharePoint will now report to administrators where are loaded from sources that have not been allowed giving administrators a way to identify those sources and take actions. Tenant Administrators can also enforce browsers to only load scripts from allowed sources. This behavior can be enabled using SharePoint Online Management Shell. GA date: March CY2025 Launched General Availability Targeted Release Worldwide (Standard Multi-Tenant) GCC GCC High DoD SharePoint Desktop
source
Back to the public feed