Server | nginx |
Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
ETag | W/"b898460d6653d971aa1b54e4ce768cc4" |
Cache-Control | max-age=0, private, must-revalidate |
X-Request-Id | 2556686a-c59a-4e67-b823-24de6857acea |
X-Runtime | 0.046828 |
Content-Security-Policy | default-src 'self'; block-all-mixed-content; child-src www.google.com www.youtube.com; font-src 'self' fonts.gstatic.com; form-action 'self' mojeid.cz; img-src 'self' data: ssl.gstatic.com; media-src 'self' blob:; script-src 'self' www.google.com www.gstatic.com; style-src 'self' 'unsafe-inline' fonts.googleapis.com; upgrade-insecure-requests; report-uri /csp_report |
Strict-Transport-Security | max-age=631139040; includeSubdomains |
X-Content-Type-Options | nosniff |
X-Download-Options | noopen |
X-Frame-Options | DENY |
X-Permitted-Cross-Domain-Policies | none |
X-XSS-Protection | 1; mode=block |