Server | nginx |
Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Expires | Thu, 19 Nov 1981 08:52:00 GMT |
Cache-Control | no-store, no-cache, must-revalidate |
Pragma | no-cache |
X-UA-Compatible | IE=Edge |
Content-Security-Policy | frame-ancestors 'self' https://*.atlassian.net https://*.landax.no; default-src 'self' blob:; frame-src 'self' blob: ms-word: ms-excel: help.landax.no www.youtube.com/embed/ player.vimeo.com/video/ https://www.google.com/recaptcha/ www.google.com/calendar/hosted/ google.com/calendar/hosted/ calendar.google.com https://kundeportal.landax.no/ https://internkundeportal.landax.no/; script-src 'unsafe-inline' 'unsafe-eval' 'self' about: *.newrelic.com www.google-analytics.com google-analytics.com *.googleapis.com maps.google.com https://www.google.com/recaptcha/ https://www.gstatic.com/recaptcha/ *.nr-data.net *.assets-yammer.com; style-src 'unsafe-inline' 'self' *.googleapis.com; img-src 'self' http: https: data: blob:; font-src 'self' data: *.gstatic.com; connect-src 'self' 'unsafe-inline' www.google-analytics.com google-analytics.com *.nr-data.net *.newrelic.com; worker-src 'self' 'unsafe-inline' blob:; form-action 'self' no.landax.landaxapp://openidredirect https://*.landax.no; report-uri /landax/csp/ |
X-Landax-Server | landaxweb05ny |
X-XSS-Protection | 1; report=/landax/xss |
Strict-Transport-Security | max-age=63072000; includeSubdomains |
X-Content-Type-Options | nosniff, nosniff |
Content-Encoding | gzip |