Did steps 1-3, nothing changed. Don't think I can add anything else as far as what the problem is and how to recreate it, so I'll skip that and add the other stuff. Campaign - <a href="https://app.roll20.net/campaigns/details/1138413/" rel="nofollow">https://app.roll20.net/campaigns/details/1138413/</a> Browser - Chrome Version - 47.0.2526.106 OS - Windows 7 64-bit Javascript - Enabled No Anti-virus program running Extensions - Adblock (2.45), Disconnect (5.18.22), various google extensions (URL shortener, slides, hangouts, docs, sheets, translate) Console log app.roll20.net/:12 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.firebaseio.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-pgtKJnkPYvo+yErakqHvVPa5GSamAsR+rwLSCkR+lsI='), or a nonce ('nonce-...') is required to enable inline execution. app.roll20.net/:13 Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.firebaseio.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> ". Either the 'unsafe-inline' keyword, a hash ('sha256-v19duySXMwXd3zUU660hZgcRTRW/BoLT6eLuziV0Xdk='), or a nonce ('nonce-...') is required to enable inline execution. app.roll20.net/:1 Refused to load the script 'about:blank' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-eval' https://*.googlesyndication.com https://*.doubleclick.net <a href="https://partner.googleadservices.com" rel="nofollow">https://partner.googleadservices.com</a> <a href="https://www.googletagservices.com" rel="nofollow">https://www.googletagservices.com</a> <a href="https://ssl.google-analytics.com" rel="nofollow">https://ssl.google-analytics.com</a> <a href="https://www.google-analytics.com" rel="nofollow">https://www.google-analytics.com</a> <a href="https://ajax.googleapis.com" rel="nofollow">https://ajax.googleapis.com</a> <a href="https://d3clqjduf2gvxg.cloudfront.net" rel="nofollow">https://d3clqjduf2gvxg.cloudfront.net</a> <a href="https://cdn.firebase.com" rel="nofollow">https://cdn.firebase.com</a> https://*.firebaseio.com https://*.tokbox.com https://*.firebaseio.com <a href="http://static.opentok.com" rel="nofollow">http://static.opentok.com</a> <a href="http://www.google-analytics.com" rel="nofollow">http://www.google-analytics.com</a> ". app.js?1450581901:29 70 app.js?1450581901:30 TOUCH SUPPORTED: false app.js?1450581901:30 USING WEBGL ACCELERATION... app.js?1450581901:30 WEBGL STARTUP SUCCESS app.js?1450581901:25 select app.js?1450581901:25 Switch mode to select app.js?1450581901:40 Initializing new dice engine with randomness... app.js?1450581901:40 Using random entropy app.js?1450581901:42 Unable to start up OpenTok! app.js?1450581901:43 Compiling sheet... app.js?1450581901:43 Found rolltemplate: 5eDefault app.js?1450581901:43 Finding sheet rolls... app.js?1450581901:44 window resize app.js?1450581901:30 Final set zoom! app.js?1450581901:30 UPDATE GL SIZE! app.js?1450581901:30 Final set zoom! tutorial_tips.js:7 tuts loaded app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=i.imgur.com/4725LWH.png" rel="nofollow">http://imgsrv.roll20.net/?src=i.imgur.com/4725LWH.png</a> '. This content should also be served over HTTPS. app.js?1450581901:36 Final page load. app.js?1450581901:35 Auth'ed. app.js?1450581901:35 Go post auth! app.js?1450581901:35 initial setup app.js?1450581901:35 Got players value... app.js?1450581901:35 joining game... app.js?1450581901:34 Player -K4suHSaM1chUPiuyL5t is offline... app.js?1450581901:34 Player -K5B64RShzGM0ZLFpJYX is offline... app.js?1450581901:34 Global Volume: 100=1 app.js?1450581901:34 Player -K5BcyjkPxqIvSbxcooE is offline... app.js?1450581901:34 Player -K5BiIuR_QA3qpu7h5We is offline... app.js?1450581901:34 Player -K5DGEkaBl_dbV8hKajK is offline... app.js?1450581901:35 Deferred finish joining... app.js?1450581901:29 Firebase Online app.js?1450581901:34 I think I should be first? app.js?1450581901:34 FIRST PLAYER: -K5B64RShzGM0ZLFpJYX 11app.js?1450581901:33 Full load page! app.js?1450581901:35 We have 11 pages app.js?1450581901:35 handle page changes app.js?1450581901:35 false app.js?1450581901:36 Scan for new plays! app.js?1450581901:32 Do refresh link cache! app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg&cb=5</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc01.deviantart.net/fs70/f/2013/224/c/d/prancing_pony_tavern_by_daroz-d6htwmm.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc01.deviantart.net/fs70/f/2013/224/c/d/prancing_pony_tavern_by_daroz-d6htwmm.jpg&cb=5</a> '. This content should also be served over HTTPS. app.js?1450581901:43 Refresh Journal List! app.js?1450581901:42 Search took 19ms app.js?1450581901:35 init active page! app.js?1450581901:33 activate page! app.js?1450581901:33 FULLY ACTIVATE VIEWS FOR PAGE. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS. app.js?1450581901:33 Graphics: 5 app.js?1450581901:33 Paths: 0 app.js?1450581901:33 Reorder by ZORDER app.js?1450581901:32 Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/14501471/5iBPxamQ7rfApnXOEP2Qig/med.png?14502014395" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14501471/5iBPxamQ7rfApnXOEP2Qig/med.png?14502014395</a> to <a href="https://s3.amazonaws.com/files.d20.io/images/14501471/5iBPxamQ7rfApnXOEP2Qig/thumb.png?14502014395" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14501471/5iBPxamQ7rfApnXOEP2Qig/thumb.png?14502014395</a> app.js?1450581901:32 Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/14542315/0E-6XeVmu08zhkb3xcz2NA/med.jpg?14503695625" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14542315/0E-6XeVmu08zhkb3xcz2NA/med.jpg?14503695625</a> to <a href="https://s3.amazonaws.com/files.d20.io/images/14542315/0E-6XeVmu08zhkb3xcz2NA/thumb.jpg?14503695625" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14542315/0E-6XeVmu08zhkb3xcz2NA/thumb.jpg?14503695625</a> app.js?1450581901:32 Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/14506294/P40gaYHp-t3DsuAH50JmOQ/med.jpg?14502169875" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14506294/P40gaYHp-t3DsuAH50JmOQ/med.jpg?14502169875</a> to <a href="https://s3.amazonaws.com/files.d20.io/images/14506294/P40gaYHp-t3DsuAH50JmOQ/thumb.jpg?14502169875" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14506294/P40gaYHp-t3DsuAH50JmOQ/thumb.jpg?14502169875</a> app.js?1450581901:32 Swapping <a href="https://s3.amazonaws.com/files.d20.io/images/14660789/vCT8P8obyaKeAiJwrIPasw/med.png?14507850825" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14660789/vCT8P8obyaKeAiJwrIPasw/med.png?14507850825</a> to <a href="https://s3.amazonaws.com/files.d20.io/images/14660789/vCT8P8obyaKeAiJwrIPasw/thumb.png?14507850825" rel="nofollow">https://s3.amazonaws.com/files.d20.io/images/14660789/vCT8P8obyaKeAiJwrIPasw/thumb.png?14507850825</a> app.js?1450581901:36 Updating character sheet values app.js?1450581901:33 Reorder by ZORDER app.js?1450581901:36 Updating character sheet values 4app.js?1450581901:32 setting src 2app.js?1450581901:36 Updating character sheet values app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc01.deviantart.net/fs70/f/2013/224/c/d/prancing_pony_tavern_by_daroz-d6htwmm.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc01.deviantart.net/fs70/f/2013/224/c/d/prancing_pony_tavern_by_daroz-d6htwmm.jpg&cb=5</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg&cb=5</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Image from origin ' <a href="http://imgsrv.roll20.net:5100" rel="nofollow">http://imgsrv.roll20.net:5100</a> ' has been blocked from loading by Cross-Origin Resource Sharing policy: No 'Access-Control-Allow-Origin' header is present on the requested resource. Origin ' <a href="https://app.roll20.net" rel="nofollow">https://app.roll20.net</a> ' is therefore not allowed access. app.js?1450581901:29 Error loading image, probably due to cors. Trying once without CORS for <a href="http://fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg" rel="nofollow">http://fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg</a> app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg" rel="nofollow">http://fc00.deviantart.net/fs70/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://img04.deviantart.net/c42e/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg" rel="nofollow">http://img04.deviantart.net/c42e/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg</a> '. This content should also be served over HTTPS. img04.deviantart.net/c42e/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg:1 GET <a href="http://img04.deviantart.net/c42e/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg" rel="nofollow">http://img04.deviantart.net/c42e/i/2012/181/c/3/tavern_by_ltramaral-d55g796.jpg</a> 404 (Not Found) app.js?1450581901:32 Swapping <a href="http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net:5100/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> to <a href="http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS. app.js?1450581901:33 Reorder by ZORDER app.js?1450581901:28 Cols: 2 Rows: 1 app.js?1450581901:28 Took 2ms to generate cache. app.roll20.net/:1 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS. app.js?1450581901:32 setting src app.js?1450581901:32 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS. app.js?1450581901:32 Mixed Content: The page at ' <a href="https://app.roll20.net/editor/" rel="nofollow">https://app.roll20.net/editor/</a> ' was loaded over HTTPS, but requested an insecure image ' <a href="http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5" rel="nofollow">http://imgsrv.roll20.net/?src=fc04.deviantart.net/fs70/i/2013/251/d/6/misty_mountains_by_ninjatic-d6lksii.jpg&cb=5</a> '. This content should also be served over HTTPS.