Troubleshooting, limitations and production verification

Resolve origin denied

Follow this guide to add the exact normalised website origin to the account allow-list. The guide then takes you through the correct route, the checks to complete before making changes, the workflow in order, and the evidence to review afterwards.

Audience: CRM administrators, staff callers, customer contacts, voice-platform engineers and website operatorsPermission: Administrator or authorised callerModule v1.1.3
Jump to steps
Where to goAdmin Area → Setup → xConnect
Before you start
  • Verify the module is active and use the exact navigation shown above.
  • Use an account with the stated module and core CRM permissions.
  • Use known test records when changing statuses, visibility, saved filters or global navigation.

What you’ll accomplish

Add the exact normalised website origin to the account allow-list. The instructions below follow the supplied module’s live menu, controller, form, model and JavaScript flow.

Follow these steps

  1. Go to Admin Area → Setup → xConnect.
  2. Find the relevant record, setting or action on the page. Use the record name, reference, current status and surrounding details to make sure you are working on the intended item.
  3. Complete each field or control that applies to this task. Keep verified existing values intact, supply required information, and resolve any validation message before moving on.
  4. Use the primary action shown by the workflow—such as Save, Submit, Update, Call, Sign, Upload or Confirm. Submit once, then allow the request to finish before taking another action.
  5. Reopen the related register, portal, dashboard or call panel. Verify the status, visible values and any audit, activity, document, call or notification evidence created by the action.

Fields and options to review

IssueAdd the exact normalised website origin to the account allow-list.

Rules the system enforces

  • Use the actual failure code, readiness evidence and scope boundaries; do not bypass tenant or security controls.

How to confirm it worked

  • The resolve origin denied workflow completes without a validation, permission or availability error.
  • The relevant case, document, proposal, call, extension, widget session, timeline or audit evidence shows the expected state.
  • Any client-visible or public result appears only where the code explicitly allows it.

Security, privacy and operational checks

  • Validate the change with a controlled test case, contact, extension or approved website origin before relying on it in production.
  • Grant only the permissions needed for the task, and keep private documents, call metadata, signing evidence, API credentials and infrastructure paths restricted to authorised users.