Inform you about an issue I am encountering when attempting to embed content from 'https://new.express.adobe.com/' into an iframe on our website.
The specific error message I'm receiving is as follows:
"Refused to frame 'https://new.express.adobe.com/' because an ancestor violates the following Content Security Policy directive: 'frame-ancestors 'self' https://.adobe.io https://.instructure.com https://*.adobe.com https://classroom.google.com https://wakelet.com'."
It appears that our domain is not included in the list of allowed domains specified in the Content Security Policy (CSP) of 'https://new.express.adobe.com/'. We would like to request your assistance in resolving this issue.
We believe that enabling our domain to embed this content will greatly enhance the user experience on our website.
We kindly request your support in one of the following ways:
Update the CSP Policy: If possible, could you please update the CSP policy of 'https://new.express.adobe.com/' to include our domain ([paraclete.ai,staging.paraclete.ai]) in the list of allowed domains for iframe embedding? This would help us resolve the issue.
Alternative Integration: If updating the CSP is not feasible, we would appreciate guidance on alternative methods for integrating content from 'https://new.express.adobe.com/' into our website while respecting your security policies.