This document is served with
Content-Security-Policy: sandbox and no
allow-* tokens.
Content-Security-Policy: sandbox
custom-scheme navigation (zoomus://)
Check DevTools → Network → this document → response headers to see
content-security-policy: sandbox, and the Console tab for any
CSP violation reports as you click the probes.