Server | Apache |
Access-Control-Allow-Origin | https://www.loginla.com/ |
X-Permitted-Cross-Domain-Policies | none |
X-Content-Type-Options | nosniff |
X-Frame-Options | SAMEORIGIN |
Access-Control-Allow-Methods | POST,GET,REQUEST |
Access-Control-Allow-Headers | X-Requested-With, Content-Type, Content-Range, Content-Disposition, Content-Description,* |
X-Content-Security-Policy | default-src "self"; img-src "self"; style-src "self" "unsafe-inline"; font-src "self"; script-src "self" "unsafe-inline"; connect-src "self"; |
X-XSS-Protection | 1; mode=block |
Expires | Thu, 19 Nov 1981 08:52:00 GMT |
Cache-Control | no-store, no-cache, must-revalidate |
Pragma | no-cache |
Vary | Accept-Encoding |
Content-Encoding | gzip |
Keep-Alive | timeout=5, max=100 |
Connection | Keep-Alive |
Content-Type | text/html; charset=UTF-8 |