Open
Cached
·
just now
4
directives
Content-Security-Policy
No enforced CSP headers found.
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: script-src 'unsafe-inline' 'self' https://js-agent.newrelic.com https://bam-cell.nr-data.net https://d2cn40jarzxub5.cloudfront.net https://fonts.gstatic.com https://d100npzark077w.cloudfront.net https://fonts.googleapis.com https://maxcdn.bootstrapcdn.com https://uploads-eu-west-1.insided.com https://embeddable-widgets-euw1.insided.com https://www.google-analytics.com https://www.googletagmanager.com https://static.hotjar.com https://cdn.mxpnl.com https://script.hotjar.com https://community.fiixsoftware.com https://fiix-en.insided.com https://dowpznhhyvkm4.cloudfront.net 'nonce-fd5e18cd49264f0eb6c92e485d263107b10f2447959c' ; object-src 'none'; base-uri 'none'; report-uri https://t3t09eztsd.execute-api.us-west-2.amazonaws.com/v1/csp-reports
script-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'self'
script-src
Nonce
—
'nonce-fd5e18cd49264f0eb6c92e485d263107b10f2447959c'
object-src
Keyword
—
'none'
base-uri
Keyword
—
'none'