Server | Mithrandir |
Strict-Transport-Security | max-age=31536000; includeSubDomains |
ETag | "2c11e324252b:161fd63bf20:c3d94027-gzip" |
Content-Security-Policy | default-src 'self'; script-src 'self' https://www.google-analytics.com; style-src 'self'; child-src 'none'; object-src 'none'; img-src 'self' data: blob: https://www.google.com https://www.google-analytics.com https://stats.g.doubleclick.net https://pci.usd.de; connect-src 'self'; media-src 'self' data:; |
X-UA-Compatible | IE=edge |
Cache-Control | private, must-revalidate, post-check=0, pre-check=0 |
Pragma | no-cache |
Content-Type | text/html;charset=UTF-8 |
Content-Language | de |
Vary | Accept-Encoding,User-Agent |
Content-Encoding | gzip |
X-Content-Type-Options | nosniff |
X-Frame-Options | sameorigin |
X-XSS-Protection | 1; mode=block |
Referrer-Policy | no-referrer, strict-origin-when-cross-origin |
Keep-Alive | timeout=5, max=100 |
Connection | Keep-Alive |
Transfer-Encoding | chunked |