Refused to execute inline script because it violates the following Content Security Policy directive: "script-src 'nonce-sD8mlTGT13Iw2o8ub0hGPh8+cyXa5vWLGSr7taZKNhsHLY8i' 'self' 'unsafe-inline' 'unsafe-eval' https://*.paypal.com https://*.paypalobjects.com". Note that 'unsafe-inline' is ignored if either a hash or nonce value is present in the source list.