Content-Security-Policy | default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' law-education.ru share.yandex.ru graph.facebook.com api.cloudleadia.com api.leadiacloud.com cdn.api.twitter.com ajax.googleapis.com yastatic.net my2.imgsmail.ru apis.google.com www.gstatic.com yandex.st an.yandex.ru pagead2.googlesyndication.com www.youtube.com vk.com cdn.connect.mail.ru mc.yandex.ru www.google-analytics.com https://www.google-analytics.com; object-src 'self' www.gstatic.com pagead2.googlesyndication.com:* http://shinglas.ru; style-src 'self' 'unsafe-inline' s3-eu-west-1.amazonaws.com cdn.jsdelivr.net api.leadiacloud.com netdna.bootstrapcdn.com https://fonts.googleapis.com:* http://fonts.googleapis.com:*; img-src 'self' data: s3-eu-west-1.amazonaws.com 2.gravatar.com 0.gravatar.com http://0.gravatar.com/ pagead2.googlesyndication.com ll-currency.ru api.leadiacloud.com 1.gravatar.com http://1.gravatar.com/ an.yandex.ru/count http://an.yandex.ru/count/ favicon.yandex.net http://favicon.yandex.net avatars-fast.yandex.net http://avatars-fast.yandex.net/ vk.com yastatic.net www.liveinternet.ru counter.yadro.ru mc.yandex.ru www.google-analytics.com https://www.google-analytics.com; media-src 'self'; frame-src 'self' s3-eu-west-1.amazonaws.com yastatic.net http://yastatic.net/ awaps.yandex.ru static.leadia.ru api.leadiacloud.com connect.mail.ru an.yandex.ru www.youtube.com form.leadiacloud.com accounts.google.com apis.google.com googleads.g.doubleclick.net http://www.homestyler.com/ http://dragonfly.autodesk.com/ i.123service.ru vk.com; font-src 'self' data: netdna.bootstrapcdn.com https://fonts.gstatic.com:* http://fonts.gstatic.com:*; connect-src 'self' mc.yandex.ru *.gstatic.com |