Skip to content

Errors / Blocked by the browser

Refused to frame '…' because an ancestor violates the following Content Security Policy directive: "frame-ancestors …"

A website shown inside this page does not allow being shown on this site.

An empty frame; if it was an invisible helper frame, usually nothing a visitor sees.

Why it happens

  • The framed page's Content-Security-Policy: frame-ancestors lists the sites allowed to embed it, and yours is not one of them.
  • Shopify stores see it for shop.app, which only allows itself and Shopify's admin: usually a login or checkout frame meant for another context, often harmless.
  • Chrome also words it Framing '…' violates the following Content Security Policy directive.

How to fix it

  1. If you own the framed page, add your site to its frame-ancestors.
  2. If you do not, it is theirs to allow; embed a URL they meant for embedding, or link to it.

Whose problem it is

Usually another company's script or site, embedded in this one.

Does your site have it?

Free, no account. We open your page and four more in a clean Chrome and list every error like this one, with the page and the click that caused it. How the free page check works.

Check only sites you run or have permission to check.

Often seen with