Server | nginx |
Content-Type | text/html; charset=utf-8 |
Connection | keep-alive |
Expires | Thu, 01 Jan 1970 00:00:01 GMT |
ETag | 39f43c310da263cac0bdc6dedb39b4d4 |
Content-Security-Policy | default-src *.clevertarget.ru clevertarget.ru mc.yandex.ru awaps.yandex.ru ws://clevertarget.ru wss://clevertarget.ru https://login.vk.com; frame-src vk.com www.youtube.com www.google.com; font-src fonts.gstatic.com clevertarget.ru; img-src data: *.clevertarget.ru www.google-analytics.com *.vk.me https://*.vk.me vk.com clevertarget.ru mc.yandex.ru ssl.gstatic.com; script-src *.clevertarget.ru clevertarget.ru mc.yandex.ru www.google-analytics.com login.vk.com api.vk.com vk.com www.google.com apis.google.com www.gstatic.com 'unsafe-inline' 'unsafe-eval'; style-src *.clevertarget.ru clevertarget.ru 'unsafe-inline' fonts.googleapis.com; report-uri /csp_report/ |
Content-Encoding | gzip |
Strict-Transport-Security | max-age=31536000; includeSubDomains; preload |
X-Frame-Options | SAMEORIGIN |