SAP Knowledge Base Article - Preview

3774474 - Refused to load xxx because it violates the following Content Security Policy

Symptom

The browser console shows one or more of the following errors when loading certain component in the storefront:

chunk-2BX4MTID.js:17 Refused to load the script 'https://checkoutshopper-test.cdn.adyen.com/checkoutshopper/sdk/6.5.1/adyen.js' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' 'unsafe-eval' https://cdns.gigya.com https://cdns.us1.gigya.com/ https://cdns.eu1.gigya.com/ https://cdns.au1.gigya.com/ https://cdns.eu2.gigya.com/ https://cdns.cn1.sapcdm.cn/ https://cdns.global.gigya.com/ *.model-t.myhybris.cloud https://1hf1m5jtp9d2.app.eu1.dev.saas.commerce.cloud.sap". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.

Image/data in this KBA is from SAP internal systems, sample data, or demo systems. Any resemblance to real data is purely coincidental.


Read more...

Environment

SAP Commerce Cloud, Cloud ERP Edition

Product

SAP Commerce Cloud, cloud ERP edition all versions

Keywords

KBA , CEC-CCE-FET-FEP , Storefront Portal , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.