Server | nginx/1.11.9 |
Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
ETag | W/"63875f20be5eae64316d73d03a401e1c" |
Cache-Control | max-age=0, private, must-revalidate |
X-Request-Id | 41fdfc05-0433-442f-bd03-3cc4c40525b2 |
X-Runtime | 0.051229 |
Content-Security-Policy-Report-Only | default-src https: 'self' 'unsafe-inline'; child-src https: 'self' www.youtube.com; connect-src wws: ws: 'self' *.tawk.to api.stripe.com sentry.symbolia.com stats.g.doubleclick.net tagmanager.google.com ws.geonorge.no data.aws.dk; font-src https: http: 'self' data:; img-src https: http: 'self' data:; script-src https: 'self' 'unsafe-inline' 'unsafe-eval' embed.tawk.to/ js.stripe.com/ ajax.googleapis.com/ tagmanager.google.com/ www.google-analytics.com/ www.googleadservices.com; style-src 'unsafe-inline' https: about: 'self'; report-uri https://symbolia.report-uri.io/r/default/csp/reportOnly |
Strict-Transport-Security | max-age=631138519 |
X-Content-Type-Options | nosniff |
X-Download-Options | noopen |
X-Permitted-Cross-Domain-Policies | none |
X-XSS-Protection | 1; mode=block |
Content-Encoding | gzip |