Refused to load the script 'blob:http://localhost:3000/102729bd-302a-456c-be20-6188925f61f0' because it violates the following Content Security Policy directive: "script-src 'self' 'unsafe-inline' unsafe-eval". Note that 'script-src-elem' was not explicitly set, so 'script-src' is used as a fallback.