Access-Control-Allow-Headers | x-requested-with,content-type,Cache-Control,Pragma,Date |
Access-Control-Allow-Methods | POST, GET, OPTIONS, PUT, DELETE |
Access-Control-Allow-Origin | http://www.m3.com |
Access-Control-Expose-Headers | WWW-Authenticate, Server-Authorization |
Content-Security-Policy | default-src 'self' http://*.m3.com:* http://*.m3img.com:* https://*.m3.com:* https://*.m3img.com:*; style-src 'self' 'unsafe-inline' http://*.m3.com:* http://*.m3img.com:* https://*.m3.com:* https://*.m3img.com:* http://*.twitter.com http://*.google-analytics.com http://*.googleadservices.com http://*.google.com http://*.google.co.jp http://*.doubleclick.net http://b92.yahoo.co.jp http://ybx.yahoo.co.jp http://*.twimg.com http://*.googleapis.com https://*.twitter.com https://*.google-analytics.com https://*.googleadservices.com https://*.google.com https://*.google.co.jp https://*.doubleclick.net https://b92.yahoo.co.jp https://ybx.yahoo.co.jp https://*.twimg.com https://*.googleapis.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' http://*.m3.com:* http://*.m3img.com:* https://*.m3.com:* https://*.m3img.com:* http://*.twitter.com http://*.google-analytics.com http://*.googleadservices.com http://*.google.com http://*.google.co.jp http://*.doubleclick.net http://b92.yahoo.co.jp http://ybx.yahoo.co.jp http://*.twimg.com http://*.googleapis.com https://*.twitter.com https://*.google-analytics.com https://*.googleadservices.com https://*.google.com https://*.google.co.jp https://*.doubleclick.net https://b92.yahoo.co.jp https://ybx.yahoo.co.jp https://*.twimg.com https://*.googleapis.com; img-src 'self' data: http://*.m3.com:* http://*.m3img.com:* https://*.m3.com:* https://*.m3img.com:* http://*.twitter.com http://*.google-analytics.com http://*.googleadservices.com http://*.google.com http://*.google.co.jp http://*.doubleclick.net http://b92.yahoo.co.jp http://ybx.yahoo.co.jp http://*.twimg.com http://*.googleapis.com https://*.twitter.com https://*.google-analytics.com https://*.googleadservices.com https://*.google.com https://*.google.co.jp https://*.doubleclick.net https://b92.yahoo.co.jp https://ybx.yahoo.co.jp https://*.twimg.com https://*.googleapis.com; frame-src 'self' http://*.m3.com:* http://*.m3img.com:* https://*.m3.com:* https://*.m3img.com:* http://*.twitter.com http://*.google-analytics.com http://*.googleadservices.com http://*.google.com http://*.google.co.jp http://*.doubleclick.net http://b92.yahoo.co.jp http://ybx.yahoo.co.jp http://*.twimg.com http://*.googleapis.com https://*.twitter.com https://*.google-analytics.com https://*.googleadservices.com https://*.google.com https://*.google.co.jp https://*.doubleclick.net https://b92.yahoo.co.jp https://ybx.yahoo.co.jp https://*.twimg.com https://*.googleapis.com |
Content-Type | text/html; charset=utf-8 |
Vary | Accept |
X-Content-Type-Options | nosniff |
X-Frame-Options | DENY |
X-Permitted-Cross-Domain-Policies | master-only |
X-XSS-Protection | 1; mode=block |
Content-Length | 49605 |
Cache-control | no-cache |
Pragma | no-cache |
Expires | -1 |
Keep-Alive | timeout=5, max=100 |
Connection | Keep-Alive |