IT requirements & network allowlist

PolicyTools.app is a browser-based application. On some corporate networks, firewalls, proxies or endpoint filters can block the domains we need to load. Share this page with your IT team so they can whitelist us.

Domains to allow

Allow HTTPS (port 443) to the following hosts. Wildcards required where shown.

DomainPurpose
policytools.appMain application and HTML
*.policytools.appPreview, staging, static assets, email links
*.lovable.appHosting CDN — required for JS, CSS, fonts, images
*.supabase.coLogin, database, file storage, user data
js.stripe.comSecure card payments (Stripe Checkout)
api.stripe.comPayment processing
notify.policytools.appTransactional email (verification, receipts)

File types to allow

Some content filters block by file extension. Please allow these MIME types from the domains above:

  • .js, .mjs — JavaScript
  • .css — Stylesheets
  • .woff2 — Web fonts
  • .svg, .png, .webp, .ico — Images and icons
  • .json, .xml — Data and sitemap
  • .pdf, .docx, .xlsx — Exports

Browser requirements

  • Modern Chromium, Edge, Firefox or Safari (updated within the last 2 years)
  • JavaScript enabled
  • Cookies and localStorage enabled for policytools.app
  • TLS 1.2 or higher

Still having trouble?

Email support@policytools.app with a screenshot and, if possible, the browser's developer console output (F12 → Console tab). We'll help you diagnose it quickly.