Content-Type | text/html; charset=utf-8 |
Cache-Control | no-cache |
X-Frame-Options | DENY |
Strict-Transport-Security | max-age=2592000; includeSubdomains |
X-XSS-Protection | 1; mode=block |
X-Content-Type-Options | nosniff |
Content-Security-Policy | script-src 'self' 'unsafe-inline' https://*.googleapis.com https://*.google.com https://*.googleanalytics.com https://*.google-analytics.com http://www.google-analytics.com https://*.gstatic.com https://*.googletagmanager.com https://*.youtube.com https://*.ytimg.com https://ajax.googleapis.com ; style-src 'self' https://fonts.googleapis.com/css; media-src 'self' https://storage.googleapis.com/; report-uri /csp; object-src 'none'; default-src 'self'; font-src 'self' https://fonts.gstatic.com/s/; frame-src 'self' https://*.google.com https://*.youtube.com https://*.ytimg.com http://*.doubleclick.net https://*.withgoogle.com https://*.googletagmanager.com ; img-src 'self' https://storage.googleapis.com/ http://www.google-analytics.com https://www.google-analytics.com https://*.googleadservices.com https://*.google-analytics.com https://*.googleanalytics.com https://*.doubleclick.net https://*.gstatic.com https://*.google.co.uk https://*.google.com https://*.google.com.au |
Content-Encoding | gzip |
X-Cloud-Trace-Context | 1c03c79fa3f9bd5a098b63500a2e2646 |
Vary | Accept-Encoding |
Server | Google Frontend |
Expires | Wed, 14 Feb 2018 23:48:01 GMT |
Alt-Svc | hq=":443"; ma=2592000; quic=51303431; quic=51303339; quic=51303338; quic=51303337; quic=51303335,quic=":443"; ma=2592000; v="41,39,38,37,35" |
Transfer-Encoding | chunked |