Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Cloudflare rocket loader blocks script loading #15162

Open
1 task done
DRSchlaubi opened this issue Dec 11, 2024 · 1 comment
Open
1 task done

Cloudflare rocket loader blocks script loading #15162

DRSchlaubi opened this issue Dec 11, 2024 · 1 comment
Labels
bug Something isn't working

Comments

@DRSchlaubi
Copy link

Checklist

  • I have searched budibase discussions and github issues to check if my issue already exists

Hosting

  • Self
    • Method: k8s (helm)
    • Budibase Version: Helm: 3.0.257 Budibase: 3.2.27
    • App Version: 3.2.27 and 3.2.26

Describe the bug
When using CloudFlare rocket loader, previews don't load due to CSP

To Reproduce
Steps to reproduce the behavior:

  1. Setup Budibase behind rocketloader
  2. Load an app preview or an app deployment

Expected behavior
Everything works

Screenshots
image

Desktop (please complete the following information):

  • OS: Windows 24H2 (Build 26100.2454)
  • Browser Chrome
  • Version 131.0.6778.109

Additional context
VM132 rocket-loader.min.js:1 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.budibase.net https://cdn.budi.live https://js.intercomcdn.com https://widget.intercom.io https://d2l5prqdbvm3op.cloudfront.net https://us-assets.i.posthog.com 'nonce-nEXtxUhIBOlQ5hsJZjt+Nw=='". Either the 'unsafe-inline' keyword, a hash ('sha256-PxaLgZ6U2+ROaVE28X5HHykZG4rFbQwJ32zQDSXFFiM='), or a nonce ('nonce-...') is required to enable inline execution.

@DRSchlaubi DRSchlaubi added the bug Something isn't working label Dec 11, 2024
Copy link

linear bot commented Dec 11, 2024

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

No branches or pull requests

1 participant