Refused to frame due Content Security Policy directive: "frame-ancestors 'self' *.qualtrics.com". | XM Community
Skip to main content

Refused to frame due Content Security Policy directive: "frame-ancestors 'self' *.qualtrics.com".

  • September 9, 2020
  • 2 replies
  • 427 views

Hello all,
we were using a functionality in the past and now stop working on test environment. Our website has an iframe pointing to Qualtrics to review responses. Something like this: "https://xxxx.az1.qualtrics.com/Q/Data/Ajax/GetSingleResponseReport?RID=R_xxxxxxxxxxxxx&SID=SV_xxxxxxxxxxxxxx"
Console:
[Report Only] Refused to frame 'https://xxxx.az1.qualtrics.com/' because an ancestor violates the following Content Security Policy directive: "frame-ancestors 'self' *.qualtrics.com".
If we open this url on another tab it works.
Are you planning to revert this CSP directive on your test sandbox?

2 replies

Forum|alt.badge.img
  • 1 reply
  • December 19, 2022

Did you ever find a solution to this problem? My team is running into this very same issue.


ManuelaPosso13
QPN Level 2 ●●
Forum|alt.badge.img+11
  • QPN Level 2 ●●
  • 8 replies
  • September 11, 2023

Hello!

 

Did you find any solution? 
 

Thank you 


Leave a Reply