Server | nginx |
Content-Type | text/html |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
Expires | Thu, 19 Nov 1981 08:52:00 GMT |
Cache-Control | no-store, no-cache, must-revalidate, post-check=0, pre-check=0 |
Pragma | no-cache |
Strict-Transport-Security | max-age=31536000 |
X-Frame-Options | SAMEORIGIN |
X-Content-Type-Options | nosniff |
X-XSS-Protection | 1; mode=block |
Content-Security-Policy | default-src 'self' https://*.lego.com https://a248.e.akamai.net/cache.lego.com/; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://*.lego.com https://*.akamai.net https://lego.com https://*.googletagmanager.com http://*.googletagmanager.com http://*.googleapis.com https://*.googleapis.com http://*.gstatic.com https://*.gstatic.com http://maps.google.com https://maps.google.com https://*.google-analytics.com http://*.google-analytics.com https://code.jquery.com http://code.jquery.com https://*.googlecode.com http://*.googlecode.com http://fast.fonts.net/ https://connect.facebook.net https://s-static.ak.facebook.com; img-src 'self' 'unsafe-eval' 'unsafe-inline' blob: 'self' data: https://cs.analytics.lego.com https://stats.g.doubleclick.net https://*.akamai.net https://*.gstatic.com http://*.gstatic.com https://*.googleapis.com http://*.googleapis.com http://*.google-analytics.com https://*.google-analytics.com https://code.jquery.com https://google-maps-utility-library-v3.googlecode.com; style-src 'self' 'unsafe-inline' https://*.lego.com https://*.akamai.net https://*.googleapis.com http://*.googleapis.com https://code.jquery.com http://code.jquery.com http://fast.fonts.net; font-src 'self' http://*.gstatic.com https://*.gstatic.com https://*.googleusercontent.com http://*.googleusercontent.com http://fast.fonts.net http://*.e.akamai.net https://*.e.akamai.net; frame-src 'self' https://aboutus.lego.com https://wwwsecure.lego.com https://account2.lego.com https://s-static.ak.facebook.com; object-src 'self' |
Access-Control-Allow-Origin | https://*.lego.com |
Content-Encoding | gzip |