ETag | "7b1c-5a79c35d-a3cb5435f07d434;gz" |
Last-Modified | Tue, 06 Feb 2018 15:01:49 GMT |
Content-Type | text/html; charset=UTF-8 |
Content-Encoding | gzip |
Vary | Accept-Encoding, Cookie |
Accept-Ranges | bytes |
Strict-Transport-Security | max-age=31536000; preload; includeSubDomains |
X-XSS-Protection | 1; mode=block |
Referrer-Policy | no-referrer-when-downgrade |
X-Content-Type-Options | nosniff |
Connection | Keep-Alive |
X-Permitted-Cross-Domain-Policies | master-only |
X-Frame-Options | SAMEORIGIN |
Content-Language | pl-PL |
X-UA-Compatible | IE=edge |
Cache-Control | no-cache |
Content-Security-Policy | default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' maps.google.com maps.googleapis.com www.google-analytics.com www.youtube.com app3.emlgrid.com connect.facebook.net www.facebook.com app3.salesmanago.pl; object-src 'self'; style-src 'self' data: 'unsafe-inline' www.youtube.com maxcdn.bootstrapcdn.com fonts.googleapis.com www.facebook.com; img-src 'self' data: i.ytimg.com app3.salesmanago.pl www.facebook.com *.fbcdn.net *.amazonaws.com www.google-analytics.com csi.gstatic.com web.facebook.com maps.googleapis.com maps.gstatic.com maps.google.com; frame-src 'self' www.youtube.com staticxx.facebook.com www.facebook.com www.google.com app3.emlgrid.com web.facebook.com; frame-ancestors 'self'; font-src 'self' data: fonts.gstatic.com maxcdn.bootstrapcdn.com *.cdn.skype.com; form-action 'self'; connect-src 'self' app3.salesmanago.pl www.facebook.com www.google-analytics.com; manifest-src 'self'; report-uri https://www.ollie.pl/csp/; upgrade-insecure-requests; |
Alt-Svc | quic=":443"; ma=2592000; v="35,37,38,39" |