Server | nginx |
Content-Type | text/html; charset=utf-8 |
Connection | keep-alive |
X-Frame-Options | SAMEORIGIN |
Content-Security-Policy | default-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' https://ssl.google-analytics.com http://www.google-analytics.com; img-src 'self' https://ssl.google-analytics.com http://www.google-analytics.com; style-src 'self' 'unsafe-inline'; |
X-Content-Security-Policy | default-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' https://ssl.google-analytics.com http://www.google-analytics.com; img-src 'self' https://ssl.google-analytics.com http://www.google-analytics.com; style-src 'self' 'unsafe-inline'; |
X-WebKit-CSP | default-src 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' https://ssl.google-analytics.com http://www.google-analytics.com; img-src 'self' https://ssl.google-analytics.com http://www.google-analytics.com; style-src 'self' 'unsafe-inline'; |
Cache-Control | no-cache, max-age=0, must-revalidate, no-transform |
Vary | Accept-Encoding |
Content-Encoding | gzip |
Accept-Ranges | bytes |
X-Varnish | 1217275853 |
Age | 0 |
Via | 1.1 varnish |
X-Iinfo | 10-266589887-266590058 NNNN CT(216 217 0) RT(1451474132605 566) q(0 0 5 0) r(15 17) |
X-CDN | Incapsula |
Transfer-Encoding | chunked |