Cache-Control | private |
Content-Type | text/html; charset=utf-8 |
Content-Encoding | gzip |
Vary | Accept-Encoding |
Server | Microsoft-IIS/8.5 |
X-AspNetMvc-Version | 5.2 |
X-AspNet-Version | 4.0.30319 |
X-Powered-By | ASP.NET |
Access-Control-Allow-Origin | https://app.cobrowser.com |
Content-Security-Policy | default-src 'self' data: localhost:* epi.waternet.nl waternet.pti.nl www.youtube.com chat1.waternet.nl *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com fonts.googleapis.com maps.gstatic.com csi.gstatic.com fonts.gstatic.com stats.g.doubleclick.net app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net pbs.twimg.com; frame-src 'self' waternet.pti.nl *.optimizely.com chat1.waternet.nl *.hotjar.com:* www.youtube.com www.google.com www.kcmsurvey.com; script-src 'self' epi.waternet.nl localhost:* *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com maps.gstatic.com app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' epi.waternet.nl *.optimizely.com www.googletagmanager.com fonts.googleapis.com app.cobrowser.com 'unsafe-inline'; connect-src https: http: ws: wss:; |
X-Content-Security-Policy | default-src 'self' data: localhost:* epi.waternet.nl waternet.pti.nl www.youtube.com chat1.waternet.nl *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com fonts.googleapis.com maps.gstatic.com csi.gstatic.com fonts.gstatic.com stats.g.doubleclick.net app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net pbs.twimg.com; frame-src 'self' waternet.pti.nl *.optimizely.com chat1.waternet.nl *.hotjar.com:* www.youtube.com www.google.com www.kcmsurvey.com; script-src 'self' epi.waternet.nl localhost:* *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com maps.gstatic.com app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' epi.waternet.nl *.optimizely.com www.googletagmanager.com fonts.googleapis.com app.cobrowser.com 'unsafe-inline'; connect-src https: http: ws: wss:; |
X-WebKit-CSP | default-src 'self' data: localhost:* epi.waternet.nl waternet.pti.nl www.youtube.com chat1.waternet.nl *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com fonts.googleapis.com maps.gstatic.com csi.gstatic.com fonts.gstatic.com stats.g.doubleclick.net app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net pbs.twimg.com; frame-src 'self' waternet.pti.nl *.optimizely.com chat1.waternet.nl *.hotjar.com:* www.youtube.com www.google.com www.kcmsurvey.com; script-src 'self' epi.waternet.nl localhost:* *.optimizely.com www.googletagmanager.com www.google-analytics.com maps.googleapis.com maps.gstatic.com app.cobrowser.com *.hotjar.com:* cdn.nowinteract.com imp2.nowinteract.com js-agent.newrelic.com bam.nr-data.net 'unsafe-inline' 'unsafe-eval'; style-src 'self' epi.waternet.nl *.optimizely.com www.googletagmanager.com fonts.googleapis.com app.cobrowser.com 'unsafe-inline'; connect-src https: http: ws: wss:; |
Strict-Transport-Security | max-age=31536000 |
X-Iinfo | 4-9104024-9104032 NNNN CT(85 314 0) RT(1517525381284 39) q(0 0 4 0) r(7 8) U2 |
X-CDN | Incapsula |
Transfer-Encoding | chunked |