Open
Cached
·
just now
13
directives
Content-Security-Policy
Content-Security-Policy: script-src 'nonce-dd679e16-c027-4fc8-977c-822cf201a6c3' 'self' *.garmin.com *.trustarc.com *.truste.com https://ajax.googleapis.com https://static.garmincdn.com https://www.google.com https://cdn.appdynamics.com https://www.gstatic.com https://prefmgr-cookie.truste-svc.net https://connect.facebook.net https://www.googleadservices.com https://*.doubleclick.net https://static.criteo.net https://*.criteo.com https://bat.bing.com https://*.adform.net https://intljs.rmtag.com https://www.googletagmanager.com https://*.realytics.io https://klear.com https://px.adentifi.com https://cdn-eu.realytics.net https://secure.adnxs.com https://p.teads.tv https://js.adsrvr.org https://tag.rmp.rakuten.com https://s.pinimg.com https://sc-static.net https://*.snapchat.com https://ct.pinterest.com https://snap.licdn.com https://px.ads.linkedin.com https://c.seznam.cz https://*.google-analytics.com https://static.cloudflareinsights.com https://static.hotjar.com https://script.hotjar.com https://optimize.google.com https://members.cj.com static-pages.fe.garmin.com http://tags.tiqcdn.com https://*.tealiumiq.com https://deploytealium.com 'unsafe-eval' 'unsafe-inline' https://members.cj.com/member/publisherBookmarklet.js;default-src 'self' *.garmin.com https://static.garmincdn.com;style-src 'self' 'unsafe-inline' *.garmin.com https://static.garmincdn.com https://fonts.googleapis.com https://static.hotjar.com https://script.hotjar.com https://members.cj.com/member/javascript/publisher/bookmarklet/publisher-bookmarklet.css https://members.cj.com/member/styles/fonts/cj-icon-web-font/cj-icon-font.css;connect-src 'self' *.garmin.com *.sentry.io https://static.garmincdn.com https://*.cloudinary.com https://www.gstatic.com https://*.doubleclick.net https://*.criteo.com https://*.linksynergy.com https://*.bing.com https://*.pinterest.com https://*.snapchat.com https://px.ads.linkedin.com https://c.seznam.cz https://*.google-analytics.com https://analytics.google.com https://*.analytics.google.com https://stats.g.doubleclick.net https://*.hotjar.com https://*.hotjar.io wss://*.hotjar.com *.googlesyndication.com https://*.googlesyndication.com https://*.google.com https://akamai.tiqcdn.com https://*.akamaihd.net *.trustarc.com;font-src 'self' data: *.garmin.com *.trustarc.com *.truste.com https://static.garmincdn.com https://fonts.googleapis.com https://fonts.gstatic.com https://script.hotjar.com https://members.cj.com/member/styles/fonts/;img-src 'self' data: *.garmin.com *.trustarc.com *.truste.com https://static.garmincdn.com https://www.google.com https://www.google.co.uk https://prefmgr-cookie.truste-svc.net https://res.cloudinary.com https://res.garmin.com https://*.criteo.com https://*.doubleclick.net https://www.googleadservices.com https://px.adentifi.com https://rtb.adentifi.com https://*.teads.tv https://www.googletagmanager.com https://bat.bing.com https://secure.adnxs.com https://www.facebook.com https://*.yahoo.com https://sync.outbrain.com https://c.seznam.cz https://*.google-analytics.com https://stats.g.doubleclick.net https://static.hotjar.com https://script.hotjar.com *.akamaihd.net https://*.tealiumiq.com https://deploytealium.com https://pixel.mediaiqdigital.com https://members.cj.com/member/javascript/ui-kit/images/close_icon.png;frame-src *.garmin.com *.trustarc.com *.truste.com https://static.garmincdn.com https://www.google.com https://prefmgr-cookie.truste-svc.net https://*.googletagmanager.com https://*.doubleclick.net https://*.criteo.com https://www.youtube-nocookie.com https://insight.adsrvr.org https://*.snapchat.com https://ct.pinterest.com https://members.cj.com;object-src 'none';upgrade-insecure-requests;base-uri 'self';form-action 'self';frame-ancestors 'self';script-src-attr 'none'
script-src
Nonce
—
'nonce-dd679e16-c027-4fc8-977c-822cf201a6c3'
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-eval'
script-src
Keyword
—
'unsafe-inline'
default-src
Keyword
—
'self'
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
connect-src
Keyword
—
'self'
connect-src
Host
—
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
img-src
Host
—
object-src
Keyword
—
'none'
upgrade-insecure-requests
Source
—
(no sources)
base-uri
Keyword
—
'self'
form-action
Keyword
—
'self'
frame-ancestors
Keyword
—
'self'
script-src-attr
Keyword
—
'none'
Content-Security-Policy-Report-Only
No report-only CSP headers found.