Open
Cached
·
just now
13
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self'; base-uri 'self'; img-src 'self' data: https://*.paytm.com https://*.paytm.in https://www.google-analytics.com https://*.google-analytics.com https://www.googletagmanager.com https://*.doubleclick.net https://*.paytmpayments.com https://www.google.com https://www.google.co.in; frame-src 'self' https://*.paytm.com https://*.paytm.in https://www.googletagmanager.com https://*.paytmpayments.com ; font-src 'self' https://fonts.googleapis.com https://fonts.gstatic.com https://maxcdn.bootstrapcdn.com; media-src 'self'; style-src 'self' 'nonce-8IBTHwOdqNKAWeKl7plt8g==' https://fonts.googleapis.com; style-src-attr 'unsafe-inline'; connect-src 'self' https://*.sentry.io https://sentry-api.paytmdgt.io https://*.paytm.com https://*.paytm.in https://www.google-analytics.com https://*.google-analytics.com https://analytics.google.com https://www.google.com https://*.doubleclick.net; script-src 'self' 'nonce-8IBTHwOdqNKAWeKl7plt8g==' 'strict-dynamic' 'sha256-2Ge2nl410lwRxWtrmtZK/bEy7en9UMXhiwXstipPXBU=' https://*.paytm.com https://*.paytm.in https://www.googletagmanager.com https://www.google-analytics.com https://*.google-analytics.com https://*.doubleclick.net https://*.paytmpayments.com ; frame-ancestors 'self' https://*.paytm.com https://*.paytm.in https://*.paytmpayments.com; object-src 'none'; form-action 'self'
default-src
Keyword
—
'self'
base-uri
Keyword
—
'self'
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
frame-src
Keyword
—
'self'
font-src
Keyword
—
'self'
media-src
Keyword
—
'self'
style-src
Keyword
—
'self'
style-src
Nonce
—
'nonce-8IBTHwOdqNKAWeKl7plt8g=='
style-src-attr
Keyword
—
'unsafe-inline'
connect-src
Keyword
—
'self'
script-src
Keyword
—
'self'
script-src
Nonce
—
'nonce-8IBTHwOdqNKAWeKl7plt8g=='
script-src
Keyword
—
'strict-dynamic'
script-src
Hash
—
'sha256-2Ge2nl410lwRxWtrmtZK/bEy7en9UMXhiwXstipPXBU='
frame-ancestors
Keyword
—
'self'
frame-ancestors
Host
—
ASN
|
NCINSPL-IN NTT COMMUNICATIONS INDIA NETWORK SERVICES PRIVATE LIMITED
object-src
Keyword
—
'none'
form-action
Keyword
—
'self'
Content-Security-Policy-Report-Only
No report-only CSP headers found.