Open
Cached
·
just now
12
directives
Content-Security-Policy
Content-Security-Policy: child-src 'self' blob: gap:; connect-src 'self' blob: https://gatehub.net https://*.gatehub.net wss://*.gatehub.net wss://*.ripple.com https://id.ripple.com https://history.ripple.com:7443 https://api.ripplecharts.com https://data.xahau.network https://www.google.com/recaptcha/ https://*.zendesk.com https://ekr.zdassets.com https://www.google-analytics.com https://googletagmanager.com https://api.blockcypher.com https://api.etherscan.io https://api.blockchair.com https://blockscout.com https://songbird-explorer.flare.network wss://widget-mediator.zopim.com https://stats.g.doubleclick.net https://browser.sentry-cdn.com wss://xrpl.ws wss://testnet.xrpl-labs.com https://testnet.xrpl-labs.com wss://s.altnet.rippletest.net https://sentry.io https://*.ingest.sentry.io https://*.paywiser.eu https://iplist.cc/api https://api.stripe.com https://xumm.app https://*.xumm.app wss://xumm.app https://*.google-analytics.com wss://s.altnet.rippletest.net:51233/ wss://xahau.network/ https://xahau.network/ wss://xahau-test.net/ https://xahau-test.net/ https://xrplcluster.com wss://xrplcluster.com https://xrpldata.inftf.org https://unpkg.com/[email protected]/build/xrpl-latest-min.js.map; default-src 'self' https://gatehub.net; font-src 'self' https://gatehub.net https://fonts.googleapis.com https://fonts.gstatic.com; frame-ancestors 'self' https://*.gatehub.net https://*.mmaon.com https://mmaon.com https://wallet.interledger-test.dev https://wallet.interledger.cards https://api.test.kynta.com http://localhost:4003 https://interledger.test https://interledger.app https://*.interledger.app https://app.myeglobex.com https://*.cardveritas.my-dev.cloud https://cardveritas.my-dev.cloud https://*.cardveritas.com https://cardveritas.com https://eglobex.app; frame-src 'self' blob: data: https://gatehub.net https://*.gatehub.net https://www.google.com https://www.saltedge.com https://js.stripe.com https://hooks.stripe.com https://api.sumsub.com; img-src 'self' blob: data: https://gatehub.net https://*.gatehub.net https://www.google-analytics.com https://chart.googleapis.com https://stats.g.doubleclick.net https://ssl.gstatic.com blob: data: https://*.stripe.com; media-src 'self' https://gatehub.net https://*.gatehub.net https://static.zdassets.com blob: data:; object-src 'self' data: blob:; script-src 'self' 'unsafe-inline' 'unsafe-eval' https://gatehub.net https://*.gatehub.net https://www.google-analytics.com https://www.google.com https://fonts.googleapis.com https://ajax.googleapis.com https://apis.google.com https://www.gstatic.com https://code.highcharts.com https://*.zendesk.com https://static.zdassets.com https://www.googletagmanager.com https://browser.sentry-cdn.com https://cdn.jsdelivr.net https://*.paywiser.eu https://static.sumsub.com https://js.stripe.com/ https://xumm.app/assets/cdn/xumm-xapp-sdk.min.js https://unpkg.com/[email protected]/build/xrpl-latest-min.js https://cdn-cookieyes.com/client_data//script.js https://code.jquery.com/jquery-3.7.1.min.js https://unpkg.com/[email protected]/dist/aos.js; style-src 'self' 'unsafe-inline' https://gatehub.net https://*.gatehub.net https://fonts.googleapis.com https://*.paywiser.eu; report-uri https://gatehub.report-uri.com/r/d/csp/wizard;
child-src
Keyword
—
'self'
child-src
Scheme
—
blob:
child-src
Scheme
—
gap:
connect-src
Keyword
—
'self'
connect-src
Scheme
—
blob:
connect-src
Host
—
connect-src
Host
—
default-src
Keyword
—
'self'
font-src
Keyword
—
'self'
frame-ancestors
Keyword
—
'self'
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-src
Keyword
—
'self'
frame-src
Scheme
—
blob:
frame-src
Scheme
—
data:
img-src
Keyword
—
'self'
img-src
Scheme
—
blob:
img-src
Scheme
—
data:
img-src
Scheme
—
blob:
img-src
Scheme
—
data:
media-src
Keyword
—
'self'
media-src
Scheme
—
blob:
media-src
Scheme
—
data:
object-src
Keyword
—
'self'
object-src
Scheme
—
data:
object-src
Scheme
—
blob:
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'unsafe-eval'
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
Content-Security-Policy-Report-Only
No report-only CSP headers found.