Server | nginx |
Content-Type | text/html; charset=windows-1251 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
Pragma | no-cache |
Content-Security-Policy | default-src 'self'; script-src 'self' 'unsafe-inline' 'unsafe-eval' videoburner2015.com apicaller.ru level1cdn.com *.google-analytics.com google-analytics.com ytimg.com *.ytimg.com mail.ru *.mail.ru *.kavanga.ru kavanga.ru *.republer.com republer.com my2.imgsmail.ru www.gstatic.com pagead2.googlesyndication.com *.youtube.com youtube.com vk.com cdn.connect.mail.ru yandex.st yandex.ru yandex.net *.yandex.ru *.yandex.net yastatic.net *.yastatic.net rambler.ru *.rambler.ru openstat.net *.openstat.net liveinternet.ru *.liveinternet.ru counter.yadro.ru uralweb.ru *.uralweb.ru hotlog.ru *.hotlog.ru yandexadexchange.net; object-src 'self' *.kavanga.ru kavanga.ru yandex.ru yandex.net *.yandex.ru *.yandex.net yandexadexchange.net; style-src 'self' 'unsafe-inline' * data: http://fonts.googleapis.com:*; img-src * data: https:; media-src 'self'; frame-src 'self' *.republer.com republer.com *.doubleclick.net *.audsp.com *.acint.net yandex.ru yandex.net *.yandex.ru *.yandex.net yastatic.net mail.ru *.mail.ru youtube.com *.youtube.com vk.com yandexadexchange.net *.kavanga.ru kavanga.ru; font-src 'self' data: http://fonts.gstatic.com:*; connect-src 'self' yandex.ru yandex.net *.yandex.ru *.yandex.net yastatic.net; |
X-XSS-Protection | 1; mode=block |
X-Frame-Options | SAMEORIGIN |
Cache-Control | public |
Expires | Sat, 07 Nov 2015 18:33:55 GMT |
Content-Encoding | gzip |