Frame-Options | SAMEORIGIN |
Referrer-Policy | no-referrer-when-downgrade |
Server | nginx |
X-CDN | Imperva |
x-content-security-policy | default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: staticcdn.co.nz www.youtube.com *.google-analytics.com *.googletagmanager.com www.google.com www.gstatic.com *.googleapis.com; connect-src 'self' *.google-analytics.com *.goog |
X-Iinfo | 29-374079-374081 NNNY CT(159 319 0) RT(1712067521990 1) q(0 0 0 -1) r(8 10) U12 |
X-Varnish | 437330327 |
X-WebKit-CSP | default-src 'none'; script-src 'self' 'unsafe-inline' 'unsafe-eval' data: blob: staticcdn.co.nz www.youtube.com *.google-analytics.com *.googletagmanager.com www.google.com www.gstatic.com *.googleapis.com; connect-src 'self' *.google-analytics.com *.goog |