We launched new forums in March 2019—join us there. In a hurry for help with your website? Get Help Now!
    • 44719
    • 2 Posts
    When accessing the manager over an encrypted (https) connection, the dashboard page throws mixed content warnings in various browsers. The insecure content is coming from the default MODX security feed at http://feeds.feedburner.com/modxsecurity . The feed includes 1x1 pixel tracking images that are all served over http, hence the warnings.

    The tracking images are being inserted by Feedburner, they are not present in the source feed: https://forums.modx.com/board.xml?board=8 . They can be toggled off from the Feedburner settings panel under 'Analyze > Services > Configure Stats > Item views' (uncheck Item Views).

    While this doesn't actually make the manager less secure, it is somewhat difficult to explain why the dashboard doesn't show a lock icon (or similar) to clients. The solution is to either disable the feed altogether or write some kind of proxy script that strips out the image tags.

    Has anyone else experienced this issue? How could we go about getting those tracking images removed from the feed?
      • 27708 MODX Staff
      • 2,502 Posts
      Electrickite,

      That's an interesting issue. Truthfully, it should be reported as a bug at https://github.com/modxcms/revolution/issues?milestone=54&state=open . I will likely need to look at either switching out the Feedburner feed anyhow as it's days have been numbered for some time now.
        Author of zero books. Formerly of many strange things. Pairs well with meats. Conversations are magical experiences. He's dangerous around code but a markup magician. Blog ✦ Twitter ✦ LinkedIn ✦ GitHub