Open
Cached
·
just now
5
directives
Content-Security-Policy
No enforced CSP headers found.
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: default-src 'self';script-src 'self' www.google-analytics.com;img-src 'self' www.google-analytics.com;style-src 'self';frame-ancestors 'self' *.aws.sfdc.cl *.exacttarget.com *.marketingcloudapps.com *.marketingclouddevapps.com *.marketingcloudqaapps.com *.marketingcloudtestapps.com *.marketingcloudstageapps.com *.marketingcloudapps.local *.marketingcloudapps.local.sfdc.net *.local.sfdc.net *.exct.net *.salesforce.com *.aws-dev2-uswest2.aws.sfdc.cl
default-src
Keyword
—
'self'
script-src
Keyword
—
'self'
img-src
Keyword
—
'self'
style-src
Keyword
—
'self'
frame-ancestors
Keyword
—
'self'
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—
frame-ancestors
Host
—