Open
Cached
·
just now
6
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self' blob: *.coremedia.cloud *.byside.com *.byside.net *.byside-nos.local *.smark.io; script-src 'self' 'unsafe-eval' 'unsafe-inline' blob: *.webcare *.coremedia.cloud *.byside.com *.byside.net *.byside-nos.local *.smark.io; style-src 'self' data: blob: 'unsafe-inline' *.webcare *.coremedia.cloud *.byside.com *.byside.net *.byside-nos.local *.smark.io maxcdn.bootstrapcdn.com fonts.googleapis.com; img-src * 'self' data: blob: *.coremedia.cloud *.byside.com *.byside.net *.byside-nos.local *.smark.io; font-src * 'self' data: blob:; connect-src 'self' *.coremedia.cloud *.byside.com *.byside.net *.byside-nos.local *.smark.io *.coremedia.cloud:8443 *.byside.com:8443 *.byside.net:8443 *.byside-nos.local:8443 *.smark.io:8443 ws://*.engagement.coremedia.cloud ws://*.byside.com ws://*.byside.net ws://*.byside-nos.local ws://*.smark.io ws://*.engagement.coremedia.cloud:8443 ws://*.byside.com:8443 ws://*.byside.net:8443 ws://*.byside-nos.local:8443 ws://*.smark.io:8443 wss://*.engagement.coremedia.cloud wss://*.byside.com wss://*.byside.net wss://*.byside-nos.local wss://*.smark.io wss://*.engagement.coremedia.cloud:8443 wss://*.byside.com:8443 wss://*.byside.net:8443 wss://*.byside-nos.local:8443 wss://*.smark.io;
default-src
Keyword
—
'self'
default-src
Scheme
—
blob:
default-src
Host
—
default-src
Host
—
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-eval'
script-src
Keyword
—
'unsafe-inline'
script-src
Scheme
—
blob:
script-src
Host
—
script-src
Host
—
script-src
Host
—
style-src
Keyword
—
'self'
style-src
Scheme
—
data:
style-src
Scheme
—
blob:
style-src
Keyword
—
'unsafe-inline'
style-src
Host
—
style-src
Host
—
style-src
Host
—
img-src
Host
—
*
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
img-src
Scheme
—
blob:
img-src
Host
—
img-src
Host
—
font-src
Host
—
*
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
font-src
Scheme
—
blob:
connect-src
Keyword
—
'self'
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
Content-Security-Policy-Report-Only
No report-only CSP headers found.