Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Server | Mastodon |
X-Frame-Options | DENY |
X-Content-Type-Options | nosniff |
X-XSS-Protection | 1; mode=block |
Vary | Accept-Encoding |
Content-Encoding | gzip |
ETag | W/"5b9616f6ddf96dadc69b4e957cc909c9" |
Cache-Control | max-age=0, private, must-revalidate |
X-Request-Id | e0829ca9-1a56-4dcf-b90c-41b0371df60f |
X-Runtime | 0.028328 |
Referrer-Policy | strict-origin-when-cross-origin |
Public-Key-Pins | max-age=5184000; pin-sha256="SLyeRYcSs3idApMCbj7zdqC0hwAfrxwhHFxDfB0lujM="; pin-sha256="Xfbg4nYTWdMKgnUFjimfzAOBU0VF9Vz0PkGYP11MlFY=";pin-sha256="RV9jniqAO+734uBuOlW+jqiyGCiFq9pFzUeM1sdRf5M=" |
Content-Security-Policy | frame-ancestors 'none'; default-src 'none'; script-src 'self'; object-src 'self'; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com/; img-src * data:; media-src 'self' data:; frame-src 'none'; font-src 'self' data: https://fonts.gstatic.com/; connect-src 'self' wss://mastodon.org.uk |
Strict-Transport-Security | max-age=31536000; includeSubDomains; preload |