I'm running under a customized Pathfinder character sheets. I've cleared cookies, browser history and all the usual suspects; even a system reboot. This is the errorlines that I get from console debugger. Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net https://*.googlesyndication.com <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> https://*.googlesyndication.com <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> https://*.googlesyndication.com <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> https://*.googlesyndication.com https://*.firebaseio.com https://*.googlesyndication.com https://*.opentok.com https://*.googlesyndication.com Either the 'unsafe-inline' keyword, a hash ('sha256-aESYZ-N0pSSSPybGGp0QkugQBLSKuZbHEQJUnRPkwrY='), or a nonce ('nonce-...') is required to enable inline execution. /editor/:9 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net https://*.googlesyndication.com <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> https://*.googlesyndication.com <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> https://*.googlesyndication.com <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> https://*.googlesyndication.com https://*.firebaseio.com https://*.googlesyndication.com https://*.opentok.com https://*.googlesyndication.com Either the 'unsafe-inline' keyword, a hash ('sha256-N4rT-GhE0K4LJ4zTB64Bkmk5xSsA8M7MPSk1qY82nAQ='), or a nonce ('nonce-...') is required to enable inline execution. app.roll20.net/:15 Resource interpreted as Script but transferred with MIME type text/html: "<a href="https://app.roll20.net/editor/startjs/?timestamp=1431386881&disablewebgl=false&forcelongpolling=false&offsite=false&fbdebug=false" rel="nofollow">https://app.roll20.net/editor/startjs/?timestamp=1431386881&disablewebgl=false&forcelongpolling=false&offsite=false&fbdebug=false</a>".