Hello, So this morning I've worked for about 3h on drawing maps, writing text, uploading pic etc. for The Rise of Tiamat, and I logged out for about 5 min before logging in again and finding all of my work gone. It looks like the whole thing reset to a previous session. Here is the technical side that you ask for in the roll20 wiki. I followed the steps and deleted cookies, as well as disabled extensions, but it didn't fix anything. Is there a possibility that the content is saved somewhere? Edit: the pictures I uploaded while working on the drawings and maps are still there. Console log update: app.roll20.net/:12 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-rkYnaZutnL5OqOgv66V1Du7lkvYRY86A+Wq/wRm44Po='), or a nonce ('nonce-...') is required to enable inline execution. app.roll20.net/:13 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-npngRtQYomQz2/PGlo3OMaFWOvAvrm65p+WFyZPCRuo='), or a nonce ('nonce-...') is required to enable inline execution. app.js?1486144131:31 70 app.js?1486144131:31 TOUCH SUPPORTED: false app.js?1486144131:31 USING WEBGL ACCELERATION... app.js?1486144131:31 WEBGL STARTUP SUCCESS app.js?1486144131:33 Custom Sheet Translation app.js?1486144131:26 select app.js?1486144131:26 Switch mode to select app.js?1486144131:42 Initializing new dice engine with randomness... app.js?1486144131:42 Using random entropy app.js?1486144131:46 Compiling sheet... app.js?1486144131:46 Found rolltemplate: 5e-shaped app.js?1486144131:46 Found webworker script app.js?1486144131:46 Finding sheet rolls... app.js?1486144131:47 window resize app.js?1486144131:32 Final set zoom! app.js?1486144131:31 UPDATE GL SIZE! app.js?1486144131:32 Final set zoom! tutorial_tips.js:7 tuts loaded app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=i.imgur.com/X44kw8b.png" rel="nofollow">http://imgsrv.roll20.net/?src=i.imgur.com/X44kw8b.png</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=i.imgur.com/2KjuKkG.gif" rel="nofollow">http://imgsrv.roll20.net/?src=i.imgur.com/2KjuKkG.gif</a> '. This content should also be served over HTTPS. sheetsandboxworker.js?20160926:250 Starting up WEB WORKER /js/d20/sheetsandboxworker.js?20160926:250 Starting up WEB WORKER app.js?1486144131:38 Final page load. app.js?1486144131:48 Refresh jukebox List! app.js?1486144131:37 Auth'ed. app.js?1486144131:37 Go post auth! securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-I26qLul3b3jPDhPsXjctk84mqJTWqlpMy23PfnRB2Os='), or a nonce ('nonce-...') is required to enable inline execution. Nl @ securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-6I7GmiUeNPwud181zc8/LbAION2oo67lxio+Nb6KJek='), or a nonce ('nonce-...') is required to enable inline execution. Nl @ securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-V3LZIhGFWeljNaNiMk/uQNOFfmxGu5pVGmLCbhSZX6M='), or a nonce ('nonce-...') is required to enable inline execution. Nl @ securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-8b/5kt/0WUq0MwRiHooM8i8dBU/1QqwWNZhT2N4ZgCk='), or a nonce ('nonce-...') is required to enable inline execution. Nl @ securepubads.g.doubleclick.net/gpt/pubads_impl_108.js:192 app.js?1486144131:38 Scan for new plays! app.js?1486144131:37 initial setup app.js?1486144131:35 T.r app.js?1486144131:40 refershing page listings! app.roll20.net/:1 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-VpNAJWsBvfXOZTXPmEPJROix419tZRZdLpuD/bxZUxY='), or a nonce ('nonce-...') is required to enable inline execution. app.roll20.net/:1 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-KTqqfoTEWlx3M/VA/N1R+7c6L8N+TtA6nfJSD1r8tcE='), or a nonce ('nonce-...') is required to enable inline execution. app.js?1486144131:37 Got players value... app.js?1486144131:37 joining game... 3app.js?1486144131:35 Full load page! app.js?1486144131:37 We have 3 pages app.js?1486144131:35 Player -KbhBZSArfP9JteOYmXB is offline... app.js?1486144131:36 Global Volume: 100=1 app.js?1486144131:35 Player -KbiECZjdGITpZeWb-bN is offline... app.js?1486144131:35 Player -KbiQMX0LTEDV_nr-2qf is offline... app.js?1486144131:35 Player -KbnULs-IGY4NtfsvEbO is offline... app.js?1486144131:35 Player -KbyAZRn8CL5M67pSY1c is offline... app.js?1486144131:35 Player -KcGX23rYGYySm95Ag5w is offline... app.js?1486144131:37 Deferred finish joining... app.js?1486144131:31 Firebase Online app.js?1486144131:44 Loading Roll20 Chat Event Handlers app.js?1486144131:37 handle page changes app.js?1486144131:37 false app.js?1486144131:40 refershing page listings! app.js?1486144131:37 init active page! app.js?1486144131:35 activate page! app.js?1486144131:35 FULLY ACTIVATE VIEWS FOR PAGE. app.js?1486144131:35 Graphics: 0 app.js?1486144131:35 Paths: 0 app.js?1486144131:35 Reorder by ZORDER app.js?1486144131:38 Scan for new plays! app.js?1486144131:40 refershing page listings! app.js?1486144131:48 Refresh jukebox List! app.js?1486144131:33 Do refresh link cache! 6app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://files.d20.io/images/1433/med.png?1335737429" rel="nofollow">http://files.d20.io/images/1433/med.png?1335737429</a> '. This content should also be served over HTTPS. 2jquery.1.8.2.min.js:2 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://files.d20.io/images/1433/med.png?1335737429" rel="nofollow">http://files.d20.io/images/1433/med.png?1335737429</a> '. This content should also be served over HTTPS. (anonymous) @ jquery.1.8.2.min.js:2 app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://files.d20.io/images/1485/med.png?1335737869" rel="nofollow">http://files.d20.io/images/1485/med.png?1335737869</a> '. This content should also be served over HTTPS. app.js?1486144131:35 Reorder by ZORDER app.js?1486144131:45 Refresh Journal List! app.js?1486144131:45 Search took 29ms 2app.roll20.net/:1 Refused to execute inline event handler because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="http://ajax.googleapis.com" rel="nofollow">http://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.opentok.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> <a href="http://cdn.crowdin.com" rel="nofollow">http://cdn.crowdin.com</a> <a href="https://crowdin.com" rel="nofollow">https://crowdin.com</a> <a href="http://stun.l.google.com" rel="nofollow">http://stun.l.google.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-...'), or a nonce ('nonce-...') is required to enable inline execution. app.js:37 handle page changes app.js:37 false app.js:37 init active page! app.js:35 activate page! app.js:35 FULLY ACTIVATE VIEWS FOR PAGE. app.js:35 Graphics: 3 app.js:35 Paths: 0 app.js:35 Reorder by ZORDER app.js:40 refershing page listings! app.js:37 init active page! app.js:35 activate page! app.js:35 FULLY ACTIVATE VIEWS FOR PAGE. app.js:35 Graphics: 1 app.js:35 Paths: 0 app.js:35 Reorder by ZORDER app.js:34 Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/28261805/zUQpOPcfLCpllD4FSCPSZg/thumb.jpg?14860787995" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/28261805/zUQpOPcfLCpllD4FSCPSZg/thumb.jpg?14860787995</a> to <a href="https://s3.amazonaws.com/files.d20.io/images/28261805/zUQpOPcfLCpllD4FSCPSZg/original.jpg?14860787995" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/28261805/zUQpOPcfLCpllD4FSCPSZg/original.jpg?14860787995</a> app.js:40 refershing page listings! app.js:34 setting src app.js:30 Cols: 1 Rows: 2 app.js:30 Took 1ms to generate cache. app.js:35 Reorder by ZORDER app.js:37 init active page! app.js:35 activate page! app.js:35 FULLY ACTIVATE VIEWS FOR PAGE. app.js:35 Graphics: 3 app.js:35 Paths: 0 app.js:35 Reorder by ZORDER app.js:40 refershing page listings! app.js:32 Final set zoom! app.js:32 Array[2] app.js:31 UPDATE GL SIZE! app.js:32 Debounced init page! app.js:37 init active page! app.js:40 refershing page listings! app.js:35 activate page! app.js:35 FULLY ACTIVATE VIEWS FOR PAGE. app.js:47 window resize app.js:32 Final set zoom! app.js:32 Array[2] 2app.js:31 UPDATE GL SIZE! app.js:32 Final set zoom! app.js:32 Array[2] app.js:31 UPDATE GL SIZE! app.js?1486144131:32 Debounced init page! app.js?1486144131:37 init active page! app.js?1486144131:40 refershing page listings! These extensions were all enabled at the time the issue occurred OS: Windows 10.0 Web: Chrome 55.0.2883.87 Java Script and cookies are enabled (tried deleting them, didn't change anything) Flash version: 24.0.-1 Here's the part of the content that went missing (I took a screenshot while I was working on it):