Open
Cached
·
6h ago
6
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self' *.learning.com; style-src 'unsafe-inline' 'self' *.learning.com https://cdn.pendo.io https://pendo-io-static.storage.googleapis.com https://pendo-static-5148832028688384.storage.googleapis.com https://maxcdn.bootstrapcdn.com https://code.jquery.com https://fonts.googleapis.com; script-src 'self' 'unsafe-inline' *.learning.com https://cdn.pendo.io https://app.pendo.io https://pendo-io-static.storage.googleapis.com https://pendo-static-5148832028688384.storage.googleapis.com https://code.jquery.com https://cdn.jsdelivr.net; font-src 'self' *.learning.com https://maxcdn.bootstrapcdn.com/ https://fonts.gstatic.com; frame-src 'self' *.learning.com https://pendo-io-extensions.storage.googleapis.com https://maxcdn.bootstrapcdn.com; img-src 'self' data: https://app.pendo.io https://cdn.pendo.io https://pendo-io-static.storage.googleapis.com https://pendo-static-5148832028688384.storage.googleapis.com https://cdn.learning.com https://content.learning.com;
default-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
style-src
Keyword
—
'self'
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-inline'
font-src
Keyword
—
'self'
frame-src
Keyword
—
'self'
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
Content-Security-Policy-Report-Only
No report-only CSP headers found.