Open
Cached
·
just now
12
directives
Content-Security-Policy
Content-Security-Policy: block-all-mixed-content; default-src https://loc.gov/ https://*.loc.gov/ ; media-src https://loc.gov/ https://*.loc.gov/ https://*.readspeaker.com/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ blob:; worker-src https://loc.gov/ https://*.loc.gov/ blob:; font-src https://loc.gov/ https://*.loc.gov/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ https://ssl.p.jwpcdn.com/ data:; img-src https://loc.gov/ https://*.loc.gov/ https://congress.gov/ https://*.congress.gov/ https://*.readspeaker.com/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ https://*.ssa.gov/ https://dpm.demdex.net/ https://cm.everesttech.net/ https://*.amazonaws.com data: blob:; connect-src https://loc.gov/ https://*.loc.gov/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ https://chat-us.libanswers.com/ https://thelibraryofcongress.tt.omtrdc.net/ https://dpm.demdex.net/ https://d3c605m4lmznjl.cloudfront.net/ https://*.s3.us-east-1.amazonaws.com/; style-src https://loc.gov/ https://*.loc.gov/ https://*.readspeaker.com/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ https://ssl.p.jwpcdn.com/ https://assets.adobedtm.com/ https://*.ssa.gov/ 'unsafe-inline' blob:; script-src https://loc.gov/ https://*.loc.gov/ https://*.readspeaker.com/ https://*.arcgis.com/ https://*.arcgisonline.com/ https://webapps-cdn.esri.com/ https://cdn.jsdelivr.net https://ssl.p.jwpcdn.com/ https://assets.adobedtm.com/ https://*.blackbaudcdn.net/ https://*.blackbaud.com/ https://ajax.googleapis.com/ajax/libs/jquery/ https://*.ssa.gov/ https://s.ytimg.com/ 'unsafe-inline' 'unsafe-eval'; frame-src https://loc.gov/ https://*.loc.gov/ https://*.readspeaker.com/ https://*.blackbaudcdn.net/ https://*.blackbaud.com/ https://www.nlstalkingbooks.org/ https://unitedstateslibraryofcongress.demdex.net https://www.youtube-nocookie.com/; frame-ancestors https://loc.gov/ https://*.loc.gov/ https://*.blackbaudcdn.net/ https://*.blackbaud.com/ https://loc.libwizard.com/; report-uri https://errorlogging.loc.gov/api/51/security/?sentry_key=2176ae0b9acd4cd59297edc0e064cc95&sentry_environment=production ;
block-all-mixed-content
Source
—
(no sources)
default-src
Host
—
default-src
Host
—
media-src
Host
—
media-src
Host
—
media-src
Scheme
—
blob:
worker-src
Host
—
worker-src
Host
—
worker-src
Scheme
—
blob:
font-src
Host
—
font-src
Host
—
font-src
Scheme
—
data:
img-src
Host
—
img-src
Host
—
img-src
Host
—
img-src
Host
—
img-src
Host
—
img-src
Scheme
—
data:
img-src
Scheme
—
blob:
connect-src
Host
—
connect-src
Host
—
style-src
Host
—
style-src
Host
—
style-src
Host
—
style-src
Keyword
—
'unsafe-inline'
style-src
Scheme
—
blob:
script-src
Host
—
script-src
Host
—
script-src
Host
—
script-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'unsafe-eval'
frame-src
Host
—
frame-src
Host
—
frame-src
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
Content-Security-Policy-Report-Only
No report-only CSP headers found.