Cache-Control | no-cache, no-store |
Pragma | no-cache |
Content-Type | text/html; charset=utf-8 |
Content-Encoding | gzip |
Expires | -1 |
Vary | Accept-Encoding |
Content-Security-Policy | script-src 'self' 'unsafe-eval' https://www.google-analytics.com |
X-WebKit-CSP | script-src 'self' 'unsafe-eval' https://www.google-analytics.com |
X-Content-Security-Policy | script-src 'self' 'unsafe-eval' https://www.google-analytics.com |
X-Content-Type-Options | NOSNIFF |
X-Frame-Options | SAMEORIGIN |
X-Permitted-Cross-Domain-Policies | master-only |
X-XSS-Protection | 1; mode=block |
Strict-Transport-Security | max-age=63072000 |