Open
Cached
·
just now
8
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self'; script-src 'self' 'unsafe-inline' https://www.googletagmanager.com https://www.google-analytics.com https://edge.easyclocking.com https://googleads.g.doubleclick.net https://lucia-lovable-widget.netlify.app https://tgtag.io https://cdn.cr-relay.com https://cdn.vector.co https://a.usbrowserspeed.com https://*.contentsquare.net https://js.hsforms.net https://*.hubspot.com https://*.hsforms.net https://*.hsforms.com https://*.hs-scripts.com https://*.hs-analytics.net https://*.hscollectedforms.net; style-src 'self' 'unsafe-inline' https://lucia-lovable-widget.netlify.app https://fonts.googleapis.com; img-src 'self' data: https://img.youtube.com https://api.dicebear.com https://*.workeasysoftware.com https://p.tgtag.io https://lucia-lovable-widget.netlify.app https://*.hubspot.com https://*.hsforms.com https://*.hsforms.net https://analytics.google.com https://www.google-analytics.com https://www.google.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://a.usbrowserspeed.com; font-src 'self' https://fonts.gstatic.com; connect-src 'self' https://www.google-analytics.com https://www.googletagmanager.com https://region1.google-analytics.com https://edge.easyclocking.com https://www.google.com https://googleads.g.doubleclick.net https://www.googleadservices.com https://lucia-lovable-widget.netlify.app https://workeasy-software.app.n8n.cloud https://*.hsforms.com https://*.hsforms.net https://*.hubspot.com https://*.hs-scripts.com https://*.hs-analytics.net https://*.hscollectedforms.net https://tgtag.io https://p.tgtag.io https://api.trafficguard.ai https://api.cr-relay.com https://api.vector.co https://*.contentsquare.net wss://*.livekit.cloud; frame-src https://www.youtube-nocookie.com https://edge.easyclocking.com https://lucia-lovable-widget.netlify.app https://*.hsforms.com https://*.hsforms.net https://*.hubspot.com https://api.vector.co; frame-ancestors 'none'
default-src
Keyword
—
'self'
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-inline'
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
font-src
Keyword
—
'self'
connect-src
Keyword
—
'self'
connect-src
Host
—
frame-ancestors
Keyword
—
'none'
Content-Security-Policy-Report-Only
No report-only CSP headers found.