Open
Cached
·
just now
14
directives
Content-Security-Policy
Content-Security-Policy: frame-ancestors 'none'; base-uri 'self'; connect-src 'self' https://www.recaptcha.net https://next-gen-app-prod.web.app https://cakemail-app-admin-prod.web.app *.linkedin.com https://*.verisoul.ai wss://*.verisoul.ai *.yapla.com https://app.posthog.com ssgtm.cakemail.com googletagmanager.com e.cakemail.com ph.cake.io plausible.io *.profitwell.com https://grsm.io *.appcues.net *.appcues.com wss://api.appcues.net *.googleapis.com/ *.sentry.io *.pagepeeker.com *.locize.app *.getbee.io shttps://formbuilder.online *.cloudfunctions.net http://io.v2.customerlabs.co *.google.com *.doubleclick.net *.tapfiliate.com https://api.segment.io https://cdnsegment.cakemail.com/ https://partnerlinks.io https://app.prismatic.io; default-src 'self' 'strict-dynamic'; font-src 'self' https://next-gen-app-prod.web.app https://cakemail-app-admin-prod.web.app *.gstatic.com *.typekit.net data:; frame-src 'self' https://www.recaptcha.net *.youtube.com *.vimeo.com *.wistia.com *.twitch.tv *.dailymotion.com *.google.com https://ckm-billing-prod.web.app/ https://td.doubleclick.net https://billing.cakemail.com https://mfa-portal-prod.web.app *.getbee.io https://screenshots.wbsrvc.com/ https://screenshots2.wbsrvcx.com/ *.locize.app/ https://storage.googleapis.com https://app.prismatic.io/; img-src 'self' data: *; manifest-src 'self'; media-src 'self'; object-src 'self' storage.googleapis.com *.wbsrvc.com *.wbsrvcx.com; report-uri https://6006f1a2937fe147894b8afa.endpoint.csper.io/ ; script-src 'report-sample' 'self' https://www.recaptcha.net 'sha256-ZeCnt8bZ9qSqr/Zd0/02k9v0GB7HFQPldIDNeYBFG8U=' 'sha256-ddB4/YVQb844ZjK77Gi4M3iOjDxMoI2ypHGQEGA3iV0=' 'sha256-4QE6hgBPiYkpNwiabEiKre/wrGwtcDpj805VAc3xKzk=' 'sha256-/6SBPqW+GW+//4nlXX6Y1nR9dWlh0gsQJ6KK71djH6A=' 'sha256-kiKyLAbN0l8y2ws4CiL02c3ujz1GnZ2jyhnWTprjvWk=' 'sha256-+x5IRx3ijDq/+Mk2KI/OQeCMglCK+dfJWu3g9WHsqmU=' 'sha256-fntHcnwlXlbMDL5TVRi/rYBRJ1Fj2S5m3UaBAZaugag=' 'sha256-chpkbWBm6lsvfOJangBMTRAvpFaTORIibZimwWygIqg=' 'sha256-VG6d8KWtRUwiI/6pfcf7p5xx3vJlHDRKtxSd1pdrU0I=' *.gstatic.com https://js.verisoul.ai https://stripe-interface-stg.web.app https://stripe-interface-prod.web.app https://next-gen-app-stg.web.app https://next-gen-app-prod.web.app https://cakemail-app-admin-prod.web.app https://www.google.com/ https://ckm-cdp-analytics-stg.web.app e.cakemail.com ph.cake.io *.googletagmanager.com *.ssgtm.cakemail.com plausible.io https://cdnsegment.cakemail.com https://public.profitwell.com https://assets.customer.io *.ckeditor.com/ *.getbee.io/ *.googleapis.com/ *.google.com/ *.google.ca/ *.tapfiliate.com *.typekit.net http://fast.appcues.com https://connect.facebook.net http://cdn.js.customerlabs.co https://snap.licdn.com https://stats.g.doubleclick.net https://app.posthog.com; style-src 'self' https://stripe-interface-stg.web.app https://stripe-interface-prod.web.app https://next-gen-app-stg.web.app https://next-gen-app-prod.web.app https://cakemail-app-admin-prod.web.app https://ckm-cdp-analytics-stg.web.app https://fast.appcues.com 'report-sample' 'unsafe-inline' *.typekit.net *.ckeditor.com *.googleapis.com; worker-src blob:;
frame-ancestors
Keyword
—
'none'
base-uri
Keyword
—
'self'
connect-src
Keyword
—
'self'
connect-src
Host
—
connect-src
Host
—
default-src
Keyword
—
'self'
default-src
Keyword
—
'strict-dynamic'
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
frame-src
Keyword
—
'self'
frame-src
Host
—
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
img-src
Host
—
*
manifest-src
Keyword
—
'self'
media-src
Keyword
—
'self'
object-src
Keyword
—
'self'
object-src
Host
—
object-src
Host
—
script-src
Keyword
—
'report-sample'
script-src
Keyword
—
'self'
script-src
Hash
—
'sha256-ZeCnt8bZ9qSqr/Zd0/02k9v0GB7HFQPldIDNeYBFG8U='
script-src
Hash
—
'sha256-ddB4/YVQb844ZjK77Gi4M3iOjDxMoI2ypHGQEGA3iV0='
script-src
Hash
—
'sha256-4QE6hgBPiYkpNwiabEiKre/wrGwtcDpj805VAc3xKzk='
script-src
Hash
—
'sha256-/6SBPqW+GW+//4nlXX6Y1nR9dWlh0gsQJ6KK71djH6A='
script-src
Hash
—
'sha256-kiKyLAbN0l8y2ws4CiL02c3ujz1GnZ2jyhnWTprjvWk='
script-src
Hash
—
'sha256-+x5IRx3ijDq/+Mk2KI/OQeCMglCK+dfJWu3g9WHsqmU='
script-src
Hash
—
'sha256-fntHcnwlXlbMDL5TVRi/rYBRJ1Fj2S5m3UaBAZaugag='
script-src
Hash
—
'sha256-chpkbWBm6lsvfOJangBMTRAvpFaTORIibZimwWygIqg='
script-src
Hash
—
'sha256-VG6d8KWtRUwiI/6pfcf7p5xx3vJlHDRKtxSd1pdrU0I='
script-src
Host
—
style-src
Keyword
—
'self'
style-src
Keyword
—
'report-sample'
style-src
Keyword
—
'unsafe-inline'
worker-src
Scheme
—
blob:
Content-Security-Policy-Report-Only
No report-only CSP headers found.