server: |
nginx |
date: |
Fri, 04 Oct 2024 22:18:47 GMT |
content-type: |
text/html; charset=UTF-8 |
transfer-encoding: |
chunked |
connection: |
close |
strict-transport-security: |
max-age=63072000; includeSubDomains |
expect-ct: |
max-age=7776000, enforce |
last-modified: |
Fri, 04 Oct 2024 17:14:39 GMT |
cache-control: |
max-age=0 |
expires: |
Fri, 04 Oct 2024 22:18:47 GMT |
vary: |
Accept-Encoding |
x-xss-protection: |
1; mode=block |
x-frame-options: |
SAMEORIGIN |
x-content-type-options: |
nosniff |
x-permitted-cross-domain-policies: |
none |
content-security-policy: |
default-src 'self' *.davitamon.nl; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.davitamon.nl *.addtoany.com *.adsrvr.org *.amazon-adsystem.com *.azure.com *.bootstrapcdn.com *.channelsight.com *.ckeditor.com *.clic2buy.com *.click2buy.com *.cloudflare.com *.cookielaw.org *.criteo.com *.criteo.net *.delivr.net *.doubleclick.net *.facebook.com *.facebook.net *.google.co.in *.google.com *.googleadservices.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.hotjar.com *.hotjar.io *.jquery.com *.jsdelivr.net *.myfonts.net *.newrelic.com *.onetrust.com *.outbrain.com *.pinterest.com *.recaptcha.net *.snapchat.com *.soundcloud.com *.static.net *.taboola.com *.teads.tv *.typekit.net *.unpkg.com *.vimeo.com *.visualstudio.com *.wp.com *.youtube.com addtoany.com adsrvr.org amazon-adsystem.com azure.com bootstrapcdn.com channelsight.com ckeditor.com clic2buy.com click2buy.com cloudflare.com cookielaw.org criteo.com criteo.net delivr.net doubleclick.net facebook.com facebook.net google.co.in google.com googleadservices.com google-analytics.com googleapis.com googletagmanager.com gstatic.com hotjar.com hotjar.io jquery.com jsdelivr.net myfonts.net newrelic.com onetrust.com outbrain.com pinterest.com recaptcha.net snapchat.com soundcloud.com static.net taboola.com teads.tv typekit.net unpkg.com vimeo.com visualstudio.com wp.com youtube.com *.pinimg.com pinimg.com *.trackcmp.net trackcmp.net cscoreproweustor.blob.core.windows.net *.browser-update.org browser-update.org stats.wp.com/s-202150.js unpkg.com *.unpkg.com; img-src * data:; style-src 'self' 'unsafe-inline' *.davitamon.nl *.addtoany.com *.adsrvr.org *.amazon-adsystem.com *.azure.com *.bootstrapcdn.com *.channelsight.com *.ckeditor.com *.clic2buy.com *.click2buy.com *.cloudflare.com *.cookielaw.org *.criteo.com *.criteo.net *.delivr.net *.doubleclick.net *.facebook.com *.facebook.net *.google.co.in *.google.com *.googleadservices.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.hotjar.com *.hotjar.io *.jquery.com *.jsdelivr.net *.myfonts.net *.newrelic.com *.onetrust.com *.outbrain.com *.pinterest.com *.recaptcha.net *.snapchat.com *.soundcloud.com *.static.net *.taboola.com *.teads.tv *.typekit.net *.unpkg.com *.vimeo.com *.visualstudio.com *.wp.com *.youtube.com addtoany.com adsrvr.org amazon-adsystem.com azure.com bootstrapcdn.com channelsight.com ckeditor.com clic2buy.com click2buy.com cloudflare.com cookielaw.org criteo.com criteo.net delivr.net doubleclick.net facebook.com facebook.net google.co.in google.com googleadservices.com google-analytics.com googleapis.com googletagmanager.com gstatic.com hotjar.com hotjar.io jquery.com jsdelivr.net myfonts.net newrelic.com onetrust.com outbrain.com pinterest.com recaptcha.net snapchat.com soundcloud.com static.net taboola.com teads.tv typekit.net unpkg.com vimeo.com visualstudio.com wp.com youtube.com; font-src 'self' data: *.davitamon.nl *.addtoany.com *.adsrvr.org *.amazon-adsystem.com *.azure.com *.bootstrapcdn.com *.channelsight.com *.ckeditor.com *.clic2buy.com *.click2buy.com *.cloudflare.com *.cookielaw.org *.criteo.com *.criteo.net *.delivr.net *.doubleclick.net *.facebook.com *.facebook.net *.google.co.in *.google.com *.googleadservices.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.hotjar.com *.hotjar.io *.jquery.com *.jsdelivr.net *.myfonts.net *.newrelic.com *.onetrust.com *.outbrain.com *.pinterest.com *.recaptcha.net *.snapchat.com *.soundcloud.com *.static.net *.taboola.com *.teads.tv *.typekit.net *.unpkg.com *.vimeo.com *.visualstudio.com *.wp.com *.youtube.com addtoany.com adsrvr.org amazon-adsystem.com azure.com bootstrapcdn.com channelsight.com ckeditor.com clic2buy.com click2buy.com cloudflare.com cookielaw.org criteo.com criteo.net delivr.net doubleclick.net facebook.com facebook.net google.co.in google.com googleadservices.com google-analytics.com googleapis.com googletagmanager.com gstatic.com hotjar.com hotjar.io jquery.com jsdelivr.net myfonts.net newrelic.com onetrust.com outbrain.com pinterest.com recaptcha.net snapchat.com soundcloud.com static.net taboola.com teads.tv typekit.net unpkg.com vimeo.com visualstudio.com wp.com youtube.com; child-src 'self' blob: *.davitamon.nl *.addtoany.com *.adsrvr.org *.amazon-adsystem.com *.azure.com *.bootstrapcdn.com *.channelsight.com *.ckeditor.com *.clic2buy.com *.click2buy.com *.cloudflare.com *.cookielaw.org *.criteo.com *.criteo.net *.delivr.net *.doubleclick.net *.facebook.com *.facebook.net *.google.co.in *.google.com *.googleadservices.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.hotjar.com *.hotjar.io *.jquery.com *.jsdelivr.net *.myfonts.net *.newrelic.com *.onetrust.com *.outbrain.com *.pinterest.com *.recaptcha.net *.snapchat.com *.soundcloud.com *.static.net *.taboola.com *.teads.tv *.typekit.net *.unpkg.com *.vimeo.com *.visualstudio.com *.wp.com *.youtube.com addtoany.com adsrvr.org amazon-adsystem.com azure.com bootstrapcdn.com channelsight.com ckeditor.com clic2buy.com click2buy.com cloudflare.com cookielaw.org criteo.com criteo.net delivr.net doubleclick.net facebook.com facebook.net google.co.in google.com googleadservices.com google-analytics.com googleapis.com googletagmanager.com gstatic.com hotjar.com hotjar.io jquery.com jsdelivr.net myfonts.net newrelic.com onetrust.com outbrain.com pinterest.com recaptcha.net snapchat.com soundcloud.com static.net taboola.com teads.tv typekit.net unpkg.com vimeo.com visualstudio.com wp.com youtube.com; connect-src 'self' *.davitamon.nl *.addtoany.com *.adsrvr.org *.amazon-adsystem.com *.azure.com *.bootstrapcdn.com *.channelsight.com *.ckeditor.com *.clic2buy.com *.click2buy.com *.cloudflare.com *.cookielaw.org *.criteo.com *.criteo.net *.delivr.net *.doubleclick.net *.facebook.com *.facebook.net *.google.co.in *.google.com *.googleadservices.com *.google-analytics.com *.googleapis.com *.googletagmanager.com *.gstatic.com *.hotjar.com *.hotjar.io *.jquery.com *.jsdelivr.net *.myfonts.net *.newrelic.com *.onetrust.com *.outbrain.com *.pinterest.com *.recaptcha.net *.snapchat.com *.soundcloud.com *.static.net *.taboola.com *.teads.tv *.typekit.net *.unpkg.com *.vimeo.com *.visualstudio.com *.wp.com *.youtube.com addtoany.com adsrvr.org amazon-adsystem.com azure.com bootstrapcdn.com channelsight.com ckeditor.com clic2buy.com click2buy.com cloudflare.com cookielaw.org criteo.com criteo.net delivr.net doubleclick.net facebook.com facebook.net google.co.in google.com googleadservices.com google-analytics.com googleapis.com googletagmanager.com gstatic.com hotjar.com hotjar.io jquery.com jsdelivr.net myfonts.net newrelic.com onetrust.com outbrain.com pinterest.com recaptcha.net snapchat.com soundcloud.com static.net taboola.com teads.tv typekit.net unpkg.com vimeo.com visualstudio.com wp.com youtube.com; |
referrer-policy: |
same-origin |
feature-policy: |
geolocation 'self'; vibrate 'none' |
permissions-policy: |
geolocation=self |