If you have the Zendesk Web Widget embedded on a website or websites with a defined CSP (content security policy), you may be impacted by an upcoming change to the widget.
This change was first announced two months ago, with a cutover date of April 26th, 2019. However, not all affected accounts have yet made the changes required to their website(s) in time and as such have extended the deadline to July 17th, 2019.
While we don't have a way to confirm who is impacted, due to CSPs being defined outside of the Zendesk platform, we are alerting all customers to this out of an abundance of caution.
What you need to do
If you haven’t done so already, please follow the instructions in the previous announcement post and check/update your content security policy to include the newly required domains.
If you have verified that you have made the changes or are not impacted, no action or notification to us is required.
You will have until July 17th, 2019 to update the CSP defined on your website(s).
If you do not update your content security policy in time, your Zendesk Web Widget placed on your website(s) is at risk of not loading properly for your customers.
For additional questions, please leave your comments within this announcement post.
Thank you for your help and cooperation through this change!