I can Confirm that they get {"online":true} and this is complete log after wait for a few minuets Content Security Policy: The page's settings blocked the loading of a resource at self ("script-src <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> 'unsafe-eval' <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.doubleclick.net <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.firebaseio.com <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.opentok.com <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a>"). editor:12:0 Content Security Policy: The page's settings blocked the loading of a resource at self ("script-src <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> 'unsafe-eval' <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.doubleclick.net <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.firebaseio.com <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> https://*.opentok.com <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a>"). editor:13:0 Meanwhile over on chrome he now gets this Which is an improvement over Firefox but no UI elements With a console log of Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net https://*.googlesyndication.com <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> https://*.googlesyndication.com <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> https://*.googlesyndication.com <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> https://*.googlesyndication.com https://*.firebaseio.com https://*.googlesyndication.com https://*.opentok.com https://*.googlesyndication.com <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-m+IAfsGYvyptUxWPy2eFgCUiWo18d9j4/ijvtF2f7Zw='), or a nonce ('nonce-...') is required to enable inline execution. Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net https://*.googlesyndication.com <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> https://*.googlesyndication.com <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> https://*.googlesyndication.com <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> https://*.googlesyndication.com https://*.firebaseio.com https://*.googlesyndication.com https://*.opentok.com https://*.googlesyndication.com <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-4QwXovPHniLlS0ynk1JwQXWyAkcyJiqAtUqzQkoWhxg='), or a nonce ('nonce-...') is required to enable inline execution. 70 TOUCH SUPPORTED: false USING WEBGL ACCELERATION... WEBGL STARTUP SUCCESS select Switch mode to select Initializing new dice engine with randomness... Using random entropy Unable to start up OpenTok! Compiling sheet... Found rolltemplate: simple Found rolltemplate: atk Found rolltemplate: dmg Found rolltemplate: atkdmg Found rolltemplate: spell Found rolltemplate: npc Found rolltemplate: npcatk Found rolltemplate: npcdmg Found rolltemplate: npcaction Found webworker script Finding sheet rolls... window resize Final set zoom! UPDATE GL SIZE! Final set zoom! tuts loaded Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/srd5_360.png" rel="nofollow">http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/srd5_360.png</a> '. This content should also be served over HTTPS. Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/weight_lbs.png" rel="nofollow">http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/weight_lbs.png</a> '. This content should also be served over HTTPS. Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/srd5_360.png" rel="nofollow">http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-character-sheets/master/5th%2520Edition%2520OGL%2520by%2520Roll20/srd5_360.png</a> '. This content should also be served over HTTPS. Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-chara…er/5th%2520Edition%2520OGL%2520by%2520Roll20/D%2526D5eCommunityPreview.png" rel="nofollow">http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-chara…er/5th%2520Edition%2520OGL%2520by%2520Roll20/D%2526D5eCommunityPreview.png</a> '. This content should also be served over HTTPS. Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-chara…aster/5th%2520Edition%2520OGL%2520by%2520Roll20/D%2526D5eShapedPreview.png" rel="nofollow">http://imgsrv.roll20.net/?src=raw.githubusercontent.com/Roll20/roll20-chara…aster/5th%2520Edition%2520OGL%2520by%2520Roll20/D%2526D5eShapedPreview.png</a> '. This content should also be served over HTTPS. Starting up WEB WORKER Final page load. Auth'ed. Go post auth! initial setup r {attributes: Object, _escapedAttributes: Object, cid: "c0", changed: Object, _silent: Object…} Got players value... joining game... Player -K8kAy8XJFKkhOqmhskZ is offline... Player -K8kBZgenGI_NijLrBhj is offline... Global Volume: 100=1 Player -K9bKLuCvXaXWEE_KAAz is offline... Player -KDsrSp1h1oi-sRkCg6B is offline... Deferred finish joining... Firebase Online Adding myself before -K8kBm7RruoQZpljqjLp Refresh Journal List! Search took 1ms Full load page! We have 19 pages Scan for new plays! handle page changes false Do refresh link cache! Refresh Journal List! Search took 8ms init active page! activate page! FULLY ACTIVATE VIEWS FOR PAGE. Graphics: 7 Paths: 0 Reorder by ZORDER Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/3374" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/3374</a>... to <a href="https://s3.amazonaws.com/files.d20.io/images/3374" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/3374</a>... setting src Reorder by ZORDER