{"title":"How to list your site as a trusted URL in Salesforce","slug":"how-to-list-your-site-as-a-trusted-url-in-salesforce","url":"https://support.storeconnect.com/articles/how-to-list-your-site-as-a-trusted-url-in-salesforce","url_markdown":"https://support.storeconnect.com/articles/how-to-list-your-site-as-a-trusted-url-in-salesforce.md","subtitle":null,"summary":"Add your store domain as a CSP Trusted Site in Salesforce Setup so the Take Payment button on orders can communicate with your payment provider.","type":"Help_Documentation","video_url":"","keywords":"trusted url, csp trusted sites, salesforce setup, content security policy, payment provider, take payment button, store domain, trusted site configuration, salesforce security, site url allowlist, csp directives, storeconnect payments","last_modified":"2026-08-21T07:12:35+0000","body_markdown":"Use this process to add your store's domain to Salesforce as a trusted site, so the [**Take Payment**](salesforce-payments) button on an **Order** can communicate with your payment provider. Until you do this, Salesforce's content security policy blocks that communication and the button fails.\n\n## Before you begin\n\n- You need Salesforce administrator permissions to edit **Setup**.\n- Have your store's domain ready, including `https://`. If you have taken your store live on your own domain, use that. Otherwise use your `.storeconnect.app` address.\n\n## Add your store as a trusted site\n\n1.  Go to **Setup** \u003e **CSP Trusted Sites**.\n2.  Select **New Trusted Site**.\n3.  Enter a **Trusted Site Name**, for example `StoreConnect Domain`.\n4.  Enter your store's URL in the **Trusted Site URL** field.\n5.  Select all of the **CSP Directives**.\n6.  Select **Save**.\n\n    ![Salesforce CSP Trusted Sites form with the site name, URL, and all CSP directives selected](https://res.cloudinary.com/hzkr6fi81/image/upload/v1781677716/documentation-media/how-to-list-your-site-as-a-trusted-url-in-salesforce/trusted-url.png)\n\n7.  Confirm the site is active: it appears in the **CSP Trusted Sites** list with **Active** selected.\n8.  Open an **Order** and select **Take Payment**. The payment provider loads instead of returning an error.\n\n:::note\nAdd a separate trusted site for each store domain you use. A store on its own domain and the same store's `.storeconnect.app` address are two different URLs to Salesforce.\n:::\n\nFor more detail, see [Salesforce's CSP Trusted Sites documentation](https://developer.salesforce.com/docs/atlas.en-us.lightning.meta/lightning/security_trusted_urls_manage.htm)."}