Open srkirkland opened 4 years ago
CSP is failing because of google script, passing this
{"csp-report":{"document-uri":"https://payments.ucdavis.edu/","referrer":"","violated-directive":"connect-src","effective-directive":"connect-src","original-policy":"default-src 'self';script-src 'self' https://cdnjs.cloudflare.com https://cdn.jsdelivr.net https://cdn.datatables.net https://code.jquery.com https://stackpath.bootstrapcdn.com https://ajax.aspnetcdn.com https://www.googletagmanager.com https://www.google-analytics.com https://ajax.cloudflare.com 'nonce-pea6ValwGIjf6mv0kG3/i6WOmp1rTUWoQH6TtPXIK3I=';style-src 'self' https://stackpath.bootstrapcdn.com https://use.fontawesome.com https://cdn.datatables.net https://cdnjs.cloudflare.com https://cdn.jsdelivr.net 'nonce-pea6ValwGIjf6mv0kG3/i6WOmp1rTUWoQH6TtPXIK3I=';font-src 'self' data: https://use.fontawesome.com;img-src 'self' https://www.google-analytics.com data: https://secure.gravatar.com;report-uri /csp-report","disposition":"enforce","blocked-uri":"https://www.google-analytics.com/j/collect?v=1&_v=j85&a=739629516&t=pageview&_s=1&dl=https%3A%2F%2Fpayments.ucdavis.edu%2F&ul=en-us&de=UTF-8&dt=Index%20-%20UC%20Davis%20Payments&sd=24-bit&sr=2560x1440&vp=1424x1093&je=0&_u=AACAAUABAAAAAC~&jid=1348016223&gjid=53910015&cid=1678755484.1596065238&tid=UA-125665400-2&_gid=1333722320.1599606865&_r=1>m=2ou8q1&z=272252550","line-number":36,"column-number":32,"source-file":"https://www.google-analytics.com/analytics.js","status-code":0,"script-sample":""}}
we are getting tons of log entries about it. I'm not even seeing blocks or any bad info, just tons of empty reports. ex: