Server | Apache |
Strict-Transport-Security | max-age=16070400; includeSubDomains |
X-Diaspora-Version | 0.7.99.0-p78677164 |
X-Git-Update | 2018-02-15 12:13:21 +0000 |
X-Git-Revision | 786771643d57fed083e75e1e76ca30960b617644 |
Content-Type | text/html; charset=utf-8 |
ETag | W/"fe53834d908763008f62fca3ec923502" |
Cache-Control | max-age=0, private, must-revalidate |
X-Request-Id | f92190d1-18db-44e4-87c7-edaa1019bb9c |
X-Runtime | 0.032768 |
Content-Security-Policy | default-src 'none'; child-src 'self' www.youtube.com w.soundcloud.com twitter.com platform.twitter.com syndication.twitter.com player.vimeo.com www.mixcloud.com www.dailymotion.com media.ccc.de bandcamp.com www.instagram.com; connect-src 'self' embedr.flickr.com geo.query.yahoo.com nominatim.openstreetmap.org api.github.com; font-src 'self'; form-action 'self' platform.twitter.com syndication.twitter.com www.paypal.com; frame-ancestors 'self'; img-src data: *; media-src https: data:; script-src 'self' 'unsafe-eval' platform.twitter.com cdn.syndication.twimg.com widgets.flickr.com embedr.flickr.com platform.instagram.com 'unsafe-inline' 'nonce-ktbfpr23Xpzy4UNk79+qjE2khq8JUW4GAkUeuQNYA0s='; style-src 'self' 'unsafe-inline' platform.twitter.com *.twimg.com |
X-Content-Type-Options | nosniff |
X-Download-Options | noopen |
X-Frame-Options | sameorigin |
X-Permitted-Cross-Domain-Policies | none |
X-XSS-Protection | 1; mode=block |
Vary | Accept-Encoding |
Content-Encoding | gzip |
Via | 1.1 sechat.org |
Keep-Alive | timeout=5, max=150 |
Connection | Keep-Alive |
Transfer-Encoding | chunked |