content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
report-to: |
{"group":"heroku-nel","max_age":3600,"endpoints":[{"url":"https://nel.heroku.com/reports?ts=1727924424&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&s=%2BP06nP4nQDvnJTu5rQx39dZNt8qHBys7Q7PV%2B5USocw%3D"}]} |
reporting-endpoints: |
heroku-nel=https://nel.heroku.com/reports?ts=1727924424&sid=812dcc77-0bd0-43b1-a5f1-b25750382959&s=%2BP06nP4nQDvnJTu5rQx39dZNt8qHBys7Q7PV%2B5USocw%3D |
nel: |
{"report_to":"heroku-nel","max_age":3600,"success_fraction":0.005,"failure_fraction":0.05,"response_headers":["Via"]} |
server: |
nginx |
date: |
Thu, 03 Oct 2024 03:00:25 GMT |
set-cookie: |
language=fi; path=/ |
link: |
<https://www.tyoelake.fi/>; rel=shortlink |
x-ua-compatible: |
IE=Edge,chrome=1 |
content-security-policy: |
default-src 'self' 'unsafe-inline' *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de etk.containers.piwik.pro etk.piwik.pro *.pingdom.net *.facebook.net *.facebook.com *.taloustutkimus.fi *.jsdelivr.net *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de etk.containers.piwik.pro etk.piwik.pro *.pingdom.net *.facebook.net *.facebook.com *.taloustutkimus.fi cdn.auth0.com cdn.eu.auth0.com *.jsdelivr.net siteimproveanalytics.com *.siteimproveanalytics.io *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com;img-src 'self' data: *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de etk.containers.piwik.pro etk.piwik.pro *.pingdom.net *.facebook.net *.facebook.com *.gravatar.com *.taloustutkimus.fi cdn.auth0.com cdn.eu.auth0.com *.amazonaws.com siteimproveanalytics.com *.siteimproveanalytics.io *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com;style-src 'self' 'unsafe-inline' *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de etk.containers.piwik.pro etk.piwik.pro *.taloustutkimus.fi *.jsdelivr.net *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com; font-src 'self' 'unsafe-inline' data: *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com cdn.auth0.com cdn.eu.auth0.com *.jsdelivr.net *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com;, child-src *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de etk.containers.piwik.pro etk.piwik.pro *.facebook.net *.facebook.com *.taloustutkimus.fi *.sanomagames.com *.jsdelivr.net *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com; object-src 'none'; connect-src *.tyoelake.fi *.frc.io tyoelake.herokuapp.com tyoelake-staging.herokuapp.com d107h3c3r1aaxa.cloudfront.net cdn.tyoelake.fi *.google.fi *.google.com *.googleapis.com *.gstatic.com *.google-analytics.com *.googletagmanager.com *.doubleclick.net *.ytimg.com *.youtube.com *.googleusercontent.com *.giosg.com giosg-chat-public-eu.s3.amazonaws.com *.giosgusercontent.com *.interactions.giosgusercontent.com *.clients.giosgusercontent.com *.mypurecloud.de wss://webmessaging.mypurecloud.de *.pingdom.net *.taloustutkimus.fi *.jsdelivr.net *.reactandshare.com *.cookiebot.com analytics.etk.fi analytiikka.ahtp.fi *.riddle.com etk.containers.piwik.pro etk.piwik.pro *.facebook.net *.facebook.com; |
strict-transport-security: |
max-age=63072000 |
via: |
1.1 vegur, 1.1 b031f43146c9801101822eabdc464390.cloudfront.net (CloudFront) |
vary: |
Accept-Encoding |
x-cache: |
Hit from cloudfront |
x-amz-cf-pop: |
PRG50-C1 |
x-amz-cf-id: |
YsuRSFXJweds1i8VFBrzGgKOLUQbqn0cVbJgxXEJ8r0auQZaj2003Q== |