Server | Apache |
Strict-Transport-Security | max-age=15768000 |
X-Frame-Options | SAMEORIGIN |
X-Xss-Protection | 1; mode=block |
X-Content-Type-Options | nosniff |
Content-Security-Policy | default-src https://static.cdnland.com https://onesignal.com wss://ws.pusherapp.com/ *.pubnub.com *.cloudfront.net *.googleapis.com *.freshdesk.com *.gstatic.com wss://chat.freshdesk.com *.yandex.ru https://www2.1stpayments.net 'self'; script-src https://www.googletagmanager.com https://m.addthisedge.com https://graph.facebook.com https://static.cdnland.com https://js.pusher.com https://cdn.rawgit.com https://cdnjs.cloudflare.com https://onesignal.com https://cdn.onesignal.com https://app.partnerlottery.com https://stats.pusher.com https://freegeoip.net *.freshdesk.com *.cloudfront.net *.gstatic.com *.google.com *.google-analytics.com *.yandex.ru *.twitter.com *.twimg.com *.facebook.net http://livestream.com *.addthis.com *.ok.ru https://vk.com 'self' 'unsafe-inline' 'unsafe-eval'; object-src 'self'; style-src https://static.cdnland.com https://cdnjs.cloudflare.com https://onesignal.com *.googleapis.com *.twitter.com *.cloudfront.net 'self' 'unsafe-inline'; img-src * data:; child-src * |
P3P | CP="NOI NID ADMa OUR IND UNI COM NAV" |
Cache-Control | no-transform |
Vary | User-Agent,Accept,Accept-Encoding |
Content-Type | text/html; charset=utf-8 |
Keep-Alive | timeout=5, max=99 |
Connection | Keep-Alive |
Transfer-Encoding | chunked |