I have docker image on premise
I want to enable embedd omnichannel liveChat widget:

Chrome Console says: Refused to frame ‘h…ttp://my-linux:3000/’ because an ancestor violates the following Content Security Policy directive: “frame-ancestors ‘none’”.

Chrome Network tab has this Http Response Header:
HTTP GET h…ttp://my-linux:3000/livechat
Content-Security-Policy: frame-ancestors ‘none’

I tried to disable CSP in admin:
same effect

I have found the problem with help of the source code:

HTTP Request Header:
Referer: http://localhost:4200/

did contain the value: localhost

it works when the port is included like

basically I think the port is not part of the domain. But in 99% this wont be a problem except for local development. I suggest the port should be stripped as well