Content-Security-Policy | default-src 'self'; style-src 'self' 'unsafe-inline' d3hf62uppzvupw.cloudfront.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' d3hf62uppzvupw.cloudfront.net https://ajax.googleapis.com https://maxcdn.bootstrapcdn.com www.google-analytics.com www.gstatic.com www.googletagmanager.com www.googleadservices.com http://bat.bing.com/ https://www.googleadservices.com https://www.google.com; img-src 'self' data: d3hf62uppzvupw.cloudfront.net https://placehold.it https://placeholdit.imgix.net http://bat.r.msn.com https://googleads.g.doubleclick.net/ https://www.google.com/ https://www.google.co.uk/ http://bat.bing.com/ https://www.googleadservices.com www.google-analytics.com energy-care-group.azurewebsites.net www.energycaregroupltd.co.uk https://api.feefo.com; font-src 'self' data: https://fonts.gstatic.com/ https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com; frame-src 'self' https://www.youtube-nocookie.com https://www.youtube.com https://player.vimeo.com https://www.google.com |