Frontend scripts and styles are written to run under a strict Content-Security-Policy. No eval, no inline event handlers, no remote script CDNs.
LandTech Extras widgets load their JavaScript and CSS from files on your site. A host can send a strict Content-Security-Policy without breaking tabs, shares, or galleries from this plugin. Elementor and your theme ship their own scripts — this page covers LandTech Extras only.
Example header you can add on staging:
default-src 'self'; script-src 'self'; style-src 'self' 'unsafe-inline'
What LandTech Extras does so a strict CSP can stay on:
onclick, onmouseover, or other inline event attributes.javascript: links.eval() or new Function() in plugin scripts.data-ltxe-action and a single delegated listener.style="" on controls.Click the tabs and share buttons below. They should work on this page without loading a third-party script CDN.