Server | nginx/1.8.0 |
Content-Type | text/html; charset=UTF-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
Cache-Control | no-cache |
Access-Control-Allow-Origin | * |
Content-Security-Policy | script-src 'self' 'unsafe-inline' 'unsafe-eval' *.cackle.me cackle.me *.clicktex.ru *.google.com *.k-r.su *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru https://*.yandex.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.typekit.net *.disqus.com *.disquscdn.com *.newrelic.com *.angularjs.org; style-src 'self' 'unsafe-inline' *.cackle.me cackle.me *.clicktex.ru *.googleapis.com *.gstatic.com *.typekit.net *.disquscdn.com; frame-src 'self' *.cackle.me cackle.me maps.rosreestr.ru *.youtube.com *.clicktex.ru *.k-r.su *.facebook.com *.vimeo.com *.ulogin.ru *.ulogix.ru ulogin.ru https://ulogin.ru https://*.ulogin.ru ulogix.ru *.yastatic.net yastatic.net *.disqus.com disqus.com; font-src 'self' data: *.cackle.me cackle.me *.bootstrapcdn.com bootstrapcdn.com *.googleapis.com *.gstatic.com *.angularjs.org; connect-src 'self' wss://*.cackle.me wss://cackle.me *.google.com *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.angularjs.org |
X-Content-Security-Policy | script-src 'self' 'unsafe-inline' 'unsafe-eval' *.cackle.me cackle.me *.clicktex.ru *.google.com *.k-r.su *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru https://*.yandex.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.typekit.net *.disqus.com *.disquscdn.com *.newrelic.com *.angularjs.org; style-src 'self' 'unsafe-inline' *.cackle.me cackle.me *.clicktex.ru *.googleapis.com *.gstatic.com *.typekit.net *.disquscdn.com; frame-src 'self' *.cackle.me cackle.me maps.rosreestr.ru *.youtube.com *.clicktex.ru *.k-r.su *.facebook.com *.vimeo.com *.ulogin.ru *.ulogix.ru ulogin.ru https://ulogin.ru https://*.ulogin.ru ulogix.ru *.yastatic.net yastatic.net *.disqus.com disqus.com; font-src 'self' data: *.cackle.me cackle.me *.bootstrapcdn.com bootstrapcdn.com *.googleapis.com *.gstatic.com *.angularjs.org; connect-src 'self' wss://*.cackle.me wss://cackle.me *.google.com *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.angularjs.org |
X-WebKit-CSP | script-src 'self' 'unsafe-inline' 'unsafe-eval' *.cackle.me cackle.me *.clicktex.ru *.google.com *.k-r.su *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru https://*.yandex.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.typekit.net *.disqus.com *.disquscdn.com *.newrelic.com *.angularjs.org; style-src 'self' 'unsafe-inline' *.cackle.me cackle.me *.clicktex.ru *.googleapis.com *.gstatic.com *.typekit.net *.disquscdn.com; frame-src 'self' *.cackle.me cackle.me maps.rosreestr.ru *.youtube.com *.clicktex.ru *.k-r.su *.facebook.com *.vimeo.com *.ulogin.ru *.ulogix.ru ulogin.ru https://ulogin.ru https://*.ulogin.ru ulogix.ru *.yastatic.net yastatic.net *.disqus.com disqus.com; font-src 'self' data: *.cackle.me cackle.me *.bootstrapcdn.com bootstrapcdn.com *.googleapis.com *.gstatic.com *.angularjs.org; connect-src 'self' wss://*.cackle.me wss://cackle.me *.google.com *.yandex.ru *.rambler.ru *.mail.ru ulogin.ru yandex.st *.yandex.st *.adriver.ru *.gstatic.com *.yandex.net *.yadro.ru *.google-analytics.com *.yastatic.net *.tns-counter.ru *.googleapis.com *.adfox.ru *.angularjs.org |
X-Content-Type-Options | nosniff |
Content-Encoding | gzip |