Server | nginx/1.13.8 |
Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
ETag | W/"ae3a70ada9a3c44d9b7272f81e2e16e9" |
Cache-Control | max-age=0, private, must-revalidate |
X-Request-Id | c09b33b12ec3b77acfeb69627e56e009 |
X-Runtime | 0.390101 |
Strict-Transport-Security | max-age=63072000; includeSubDomains; preload |
Content-Security-Policy-Report-Only | default-src 'self' https:; child-src 'self' https: data:; connect-src 'self' https: wss:; font-src 'self' https: data:; img-src 'self' https: data:; media-src 'self' https: data:; object-src 'self' https:; script-src 'self' https: 'unsafe-inline' 'unsafe-eval'; style-src 'self' https: 'unsafe-inline'; report-uri /csp-report?source%5Baction%5D=show&source%5Bapp%5D=ShopifyAppStore&source%5Bcontroller%5D=shopify_applications&source%5Buuid%5D=95b6c622-f6b7-49ad-b0e8-8eda55d7dd7b |
X-Content-Type-Options | nosniff |
X-Download-Options | noopen |
X-Frame-Options | DENY |
X-Permitted-Cross-Domain-Policies | none |
X-XSS-Protection | 1; mode=block; report=/xss-report?source%5Baction%5D=show&source%5Bapp%5D=ShopifyAppStore&source%5Bcontroller%5D=shopify_applications&source%5Buuid%5D=95b6c622-f6b7-49ad-b0e8-8eda55d7dd7b |
X-App-Name | appstore |
Content-Encoding | gzip |
X-Dc | gke, gke |