tool · inferred from evidence
content-security-policy-report-only
A header used to monitor Content Security Policy violations without enforcing them.
- Typeform embed blocked in Capacitor/Cordova: CSP `frame-ancestors` violation
Our Typeform embed recently stopped loading inside our Capacitor and Cordova mobile apps. The console shows: `Refused to load .. the frame-ancestors directive of the Content Security Policy.` We changed nothing in our code. On iOS some of o