microsoftgraph / microsoftgraph/microsoft-graph-explorer-v4
Microsoft logo in header blocked by CSP
Nobody has claimed this yet.
- Dominant language
- TypeScript
- Stars
- 260
- Forks
- 110
- PR merge metrics
- No merged PRs in 30d
Description
Describe the bug
The Microsoft logo in the site header fails to load due to the strictness of the Content Security Policy (CSP).
To Reproduce
Steps to reproduce the behavior:
- Go to https://developer.microsoft.com/en-us/graph/graph-explorer
- See error
Expected behavior
The logo loads in the header.
Screenshots
Desktop (please complete the following information):
- OS: macOS
- Browser Google Chrome
- Version 136.0.7103.49
Additional context
n/a
Contributor guide
First steps
- Read the whole issue, then the project's contributing guide.
- Comment on the issue to say you are picking it up — it saves two people doing the same work.
- Fork the repository and make your change on a branch.
- Open a pull request that references the issue number.
Research direction
Reproduce the issue at the Microsoft Graph Explorer URL in Chrome and inspect the browser console for the CSP violation affecting the site header logo. Trace the header and CSP configuration from the reported page. Done means the Microsoft logo loads in the header without the CSP blocking it.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- react, typescript
- Domain
- frontend, security
- Issue type
- Bug
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Activity status
- Stale
- Clarity
- Mostly clear
- Newbie friendliness
- 45/100