Open
Cached
·
4h ago
11
directives
Content-Security-Policy
No enforced CSP headers found.
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: default-src 'self' https://*.wistia.net https://*.wistia.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' blob: https://cdn.jsdelivr.net https://analytics.sayprimer.com https://scripts.clarity.ms https://js-de.sentry-cdn.com https://*.wistia.net https://*.wistia.com https://assets.production.linktr.ee https://www.youtube.com https://assets.calendly.com https://growth.services.beekeeper.io https://connect.facebook.net https://a.omappapi.com https://tracking.g2crowd.com https://cdn-prod.eu.securiti.ai https://www.beekeeper.io https://*.zoominfo.com https://*.zi-scripts.com https://acsbapp.com https://browser.sentry-cdn.com https://js.sentry-cdn.com https://fast.wistia.com https://js.hsforms.net https://forms.hsforms.com https://hubspot-forms-static-embed.s3.amazonaws.com https://boards.greenhouse.io https://www.bugherd.com https://sidebar.bugherd.com https://cdn.cookielaw.org https://fast.wistia.net https://www.googletagmanager.com https://www.google-analytics.com https://snap.licdn.com https://bat.bing.com https://trk.techtarget.com https://www.influ2.com https://tags.srv.stackadapt.com https://lltrck.com https://www.clarity.ms https://googleads.g.doubleclick.net https://j.6sc.co https://d10lpsik1i8c69.cloudfront.net https://tracking.intentsify.io https://pi.pardot.com https://a.usbrowserspeed.com https://a.remarketstats.com https://i.liadm.com https://a.clickcertain.com https://static.cloudflareinsights.com https://www.google.com/recaptcha/ https://*.hotjar.com https://content.p3nd0.beekeeper.io https://www.gstatic.com https://dev.visualwebsiteoptimizer.com https://js.hs-analytics.net https://js.hsadspixel.net https://js.hs-scripts.com https://js.hs-banner.com https://js.hscollectedforms.net https://js.hsleadflows.net https://js.usemessages.com https://*.hubspot.com; style-src 'self' 'unsafe-inline' https://fast.wistia.com https://assets.calendly.com https://cdn-prod.eu.securiti.ai https://a.omappapi.com https://www.beekeeper.io https://fonts.googleapis.com https://d10lpsik1i8c69.cloudfront.net https://tags.srv.stackadapt.com; connect-src 'self' data: blob: https://pagead2.googlesyndication.com https://n.clarity.ms https://e.clarity.ms https://*.litix.io https://*.wistia.com https://web-script.api.sayprimer.com https://*.wistia.net https://*.algolia.net wss://ws.hotjar.com https://ltp.linktr.ee https://calendly.com https://fast.wistia.net https://selfservice-java.beekeeper.io http://pricing.services.beekeeper.io https://stats.g.doubleclick.net https://secure.adnxs.com https://tracking-api.g2.com https://app.securiti.ai https://api.omappapi.com https://app.eu.securiti.ai https://cdn-prod.eu.securiti.ai https://analytics.google.com https://forms.hubspot.com https://*.zoominfo.com https://*.zi-scripts.com https://acsbapp.com https://*.acsbapp.com https://notify.bugsnag.com https://sidebar.bugherd.com/binoculars wss://ws-mt1.pusher.com https://sockjs.pusher.com https://fg8vvsvnieiv3ej16jby.litix.io https://forms-na1.hubspot.com https://forms.hsforms.com https://hubspot-forms-static-embed.s3.amazonaws.com https://*.influ2.com https://c.6sc.co https://sessions.bugsnag.com https://cdn.cookielaw.org https://geolocation.onetrust.com https://*.wistia.com https://yoast.com https://www.google-analytics.com https://ipv6.6sc.co https://tags.srv.stackadapt.com https://settings.luckyorange.net https://px.ads.linkedin.com https://ibc-flow.techtarget.com https://t.clarity.ms https://static.cloudflareinsights.com https://o8540.ingest.sentry.io https://*.hotjar.io wss://ws.hotjar.com/api https://*.hubspot.com https://forms.hscollectedforms.net https://api.hubapi.com https://region1.analytics.google.com https://www.google.com; font-src 'self' data: https://*.wistia.com https://fast.wistia.com https://fonts.gstatic.com https://t.influ2.com https://www.google.com; frame-src 'self' data: blob: https://fast.wistia.com https://fast.wistia.net https://www.google.com https://calendly.com http://pricing.services.beekeeper.io https://www.youtube.com https://privacy-central.eu.securiti.ai https://forms.hsforms.com https://www.youtube-nocookie.com https://boards.greenhouse.io https://*.bugherd.com https://*.wistia.com https://*.wistia.net https://open.spotify.com https://td.doubleclick.net https://www.google.com/recaptcha https://iab-eu-tcf.securiti.ai https://job-boards.greenhouse.io https://privacy-central.eu.securiti.ai https://www.googletagmanager.com; img-src 'self' data: https://*.wistia.net https://*.wistia.com https://www.google.de https://plugin-updates.wpengine.com https://assets.calendly.com https://lh7-us.googleusercontent.com https://f.hubspotusercontent10.net https://www.linkedin.com https://www.googletagmanager.com https://www.facebook.com https://sidebar.bugherd.com https://bugherd-attachments.s3.amazonaws.com https://d2iiunr5ws5ch1.cloudfront.net https://i.ytimg.com https://fast.wistia.com https://embed-ssl.wistia.com https://forms-na1.hsforms.com https://cdn.cookielaw.org https://ps.w.org https://s.w.org https://secure.adnxs.com https://ib.adnxs.com https://t.influ2.com https://px.ads.linkedin.com https://www.google.com https://bat.bing.com https://www.google-analytics.com https://lltrck.com https://b.6sc.co https://px4.ads.linkedin.com blob: https://c.clarity.ms https://c.bing.com https://dev.visualwebsiteoptimizer.com https://track.hubspot.com https://*.hsforms.com/embed/; media-src 'self' blob: https://fast.wistia.com https://*.wistia.net https://embed-cloudfront.wistia.com; worker-src 'self' blob: https://beeke25stg.eight25.xyz; frame-ancestors 'self' https://www.google.com https://privacy-central.eu.securiti.ai https://open.spotify.com https://adgen-dev.spotify.com https://local.spotify.net https://*.spotify.net https://*.spotify.com; report-to csp-violation-report-endpoint ;
default-src
Keyword
—
'self'
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'unsafe-eval'
script-src
Scheme
—
blob:
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
connect-src
Keyword
—
'self'
connect-src
Scheme
—
data:
connect-src
Scheme
—
blob:
connect-src
Host
—
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
frame-src
Keyword
—
'self'
frame-src
Scheme
—
data:
frame-src
Scheme
—
blob:
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
img-src
Scheme
—
blob:
media-src
Keyword
—
'self'
media-src
Scheme
—
blob:
worker-src
Keyword
—
'self'
worker-src
Scheme
—
blob:
frame-ancestors
Keyword
—
'self'
frame-ancestors
Host
—
report-to
Host
—