Server | nginx |
Content-Type | text/html; charset=UTF-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
X-Content-Type-Options | nosniff |
Content-language | en |
X-UA-Compatible | IE=Edge |
Vary | Accept-Encoding, Accept-Encoding, Cookie |
Pragma | no-cache |
Alt-Svc | h2=":443"; ma=2628000; persist=1 |
Alternate-Protocol | 443:h2 |
P3P | CP="This is not a P3P policy! The P3P standard is deprecated. Read more about P3P here: https://en.wikipedia.org/wiki/P3P" |
Strict-Transport-Security | max-age=31536000; preload |
X-Frame-Options | sameorigin |
X-XSS-Protection | 1; mode=block |
Content-Security-Policy | default-src 'self' *.plushie.horse plushie.horse; connect-src 'self' *.plushie.horse plushie.horse; font-src 'self' *.plushie.horse plushie.horse; child-src 'self' *.plushie.horse plushie.horse https://creativecommons.org https://www.youtube.com; img-src 'self' *.plushie.horse plushie.horse blob: data: https://derpicdn.net https://www.gstatic.com; media-src 'self' *.plushie.horse plushie.horse https://ssl.gstatic.com; script-src 'self' *.plushie.horse plushie.horse 'unsafe-eval' 'unsafe-inline'; style-src 'self' *.plushie.horse plushie.horse 'self' 'unsafe-inline'; upgrade-insecure-requests |
X-Best-Pony | Twilight Sparkle |
X-Page-Speed | 1.13.35.1-0 |
Cache-Control | max-age=0, no-cache |
Content-Encoding | gzip |