Server | Apache |
X-Frame-Options | DENY |
X-Xss-Protection | 1; mode=block |
X-Content-Type-Options | nosniff |
Referrer-Policy | strict-origin-when-cross-origin |
Content-Security-Policy | default-src 'self'; script-src 'self' data: *.google-analytics.com code.jquery.com; img-src 'self' data: www.google-analytics.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com fonts.gstatic.com; font-src fonts.googleapis.com fonts.gstatic.com; frame-src 'self' *.youtube.com |
Last-Modified | Fri, 09 Feb 2018 19:14:23 GMT |
ETag | "8100063-bf9-564cc5607a1c0-gzip" |
Accept-Ranges | bytes |
Vary | Accept-Encoding,User-Agent |
Content-Encoding | gzip |
Keep-Alive | timeout=5 |
Connection | Keep-Alive |
Content-Type | text/html |