Server | Apache |
Strict-Transport-Security | max-age=63072000; includeSubdomains; preload |
Vary | Accept-Encoding |
Content-Encoding | gzip |
Content-Security-Policy | |
X-Content-Security-Policy | |
X-WebKit-CSP | |
X-XSS-Protection | 1; mode=block |
X-Content-Type-Options | nosniff |
X-Frame-Options | SAMEORIGIN |
Public-Key-Pins | pin-sha256="klO23nT2ehFDXCfx3eHTDRESMz3asj1muO+4aIdjiuY="; pin-sha256="633lt352PKRXbOwf4xSEa1M517scpD3l5f79xMD9r9Q="; max-age=2592000; includeSubDomains |
Keep-Alive | timeout=5, max=100 |
Connection | Keep-Alive |
Content-Type | text/html; charset=UTF-8 |