WingifyGuides

How to Whitelist Wingify in Your Website’s Content Security Policy (CSP)?

This article covers the following: * Overview * What’s the Impact? * Resolution

#Overview

To enhance security, websites define a Content Security Policy (CSP), which allows website owners to restrict the content (script/styles/images, etc.) loaded on the page to only trusted (whitelisted) sources. It ensures that no malicious external asset can risk your business or customers by acting as an agent for a trusted website.

#What’s the Impact?

If you’ve defined a CSP for your website, wherein you declare (whitelist) your website content to be loaded from certain sources, then browsers will automatically reject content from sources other than what is defined. Under such circumstances, browsers will not allow Wingify to load content on your website. This will impact the loading of variations that you’ve created in Wingify.

Note: While having concerns about your website’s security is supremely significant, it is important to note that Wingify running on your website intends to provide your visitors with the campaign experiences you've designed; Wingify does not inject unwanted content into your website or gather any Personally Identifiable Information (PII). Check out our privacy policy for more clarity.

#Resolution

To enable Wingify to load variations on your website and generate previews for your variations, you need to whitelist Wingify by updating the corresponding rules in your existing CSP. Precisely, you need to make changes to the CSP directives (if present). For more information, see Content Security Policy in Wingify.

#Need more help?

For more information or further assistance, contact Wingify Support.