Refused to frame due Content Security Policy directive: "frame-ancestors 'self' *.qualtrics.com". | XM Community
Skip to main content

Hello all,
we were using a functionality in the past and now stop working on test environment. Our website has an iframe pointing to Qualtrics to review responses. Something like this: "https://xxxx.az1.qualtrics.com/Q/Data/Ajax/GetSingleResponseReport?RID=R_xxxxxxxxxxxxx&SID=SV_xxxxxxxxxxxxxx"
Console:
[Report Only] Refused to frame 'https://xxxx.az1.qualtrics.com/' because an ancestor violates the following Content Security Policy directive: "frame-ancestors 'self' *.qualtrics.com".
If we open this url on another tab it works.
Are you planning to revert this CSP directive on your test sandbox?

Did you ever find a solution to this problem? My team is running into this very same issue.


Hello!

 

Did you find any solution? 
 

Thank you 


Leave a Reply