In Magento 2.4 with the Magento_CSP module enabled in report only mode, on every page load I am seeing 2 entries like
Content Security Policy: The page’s settings observed the loading of a resource at data:application/octet-stream;base64,AAE… (“font-src”). A CSP report is being sent.
Which looks like fonts loaded from base 64 encoded data instead of a URL. I'm not sure where it is coming from. Maybe some 3rd party js, GTM, etc.
How do I whitelist this, or ignore it and prevent it from showing up several times in the console for every page load??
与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…