Open
Cached
·
13m ago
12
directives
Content-Security-Policy
Content-Security-Policy: base-uri 'none'; font-src 'self' https: data:; form-action 'self'; frame-ancestors 'self'; img-src blob: 'self' https://*.googletagmanager.com https://heapanalytics.com https://humansecurity.com https://www.humansecurity.com https://humancms.wpenginepowered.com https://humanstg.wpenginepowered.com https://humancmsstg.wpenginepowered.com https://i.ytimg.com https://3400937.hs-sites.com https://pandoblox.kahon.org https://info.humansecurity.com https://human-headless-frontend-theta.vercel.app http://localhost:3000 https://humanprod.wpenginepowered.com https://*.cookielaw.org https://*.linkedin.com https://*.reddit.com https://*.rlcdn.com https://*.google.com https://*.company-target.com https://*.hubspot.net https://pixel-config.reddit.com https://*.googleusercontent.com https://f.hubspotusercontent30.net https://*.fs1.hubspotusercontent-na1.net https://assets.perimeterx.com https://stg.humansecurity.com https://humansecapi.wpengine.com data:; object-src self https://humansecurity.com https://www.humansecurity.com https://humancms.wpenginepowered.com https://humanstg.wpenginepowered.com https://humanprod.wpenginepowered.com https://humancmsstg.wpenginepowered.com https://stg.humansecurity.com data:; script-src-attr 'unsafe-inline'; style-src 'self' https: 'unsafe-inline'; script-src 'self' blob: 'unsafe-inline' 'unsafe-eval' https://*.ashbyhq.com https://*.clcktrax.com https://*.zi-scripts.com https://*.licdn.com https://*.g2crowd.com https://*.marketo.net https://tags.srv.stackadapt.com https://*.demandbase.com https://*.heap-api.com https://*.ahrefs.com https://*.qualified.com https://*.redditstatic.com https://*.script.ac https://*.doubleclick.net https://*.contentsquare.net https://*.zoominfo.com https://acsbapp.com http://localhost:3000 https://info.humansecurity.com https://js.navattic.com/ https://humanstg.wpenginepowered.com https://humanprod.wpenginepowered.com https://humancmsstg.wpenginepowered.com https://stg.humansecurity.com https://client.px-cloud.net https://humansecapi.wpengine.com https://*.goldcast.io https://*.cookielaw.org https://*.googletagmanager.com https://*.youtube.com; upgrade-insecure-requests; frame-src 'self' https://*.infogram.com https://humansecuritycom https://www.humansecurity.com https://jobs.ashbyhq.com https://humancmsstg.wpenginepowered.com https://www.youtube-nocookie.com https://*.youtube.com https://info.humansecurity.com/ https://capture.navattic.com https://humanstg.wpenginepowered.com https://humanprod.wpenginepowered.com https://*.goldcast.io https://*.company-target.com https://*.googletagmanager.com https://*.vimeo.com https://stg.humansecurity.com https://*.qualified.com https://humansecapi.wpengine.com data:; media-src 'self' blob: https://humansecurity.com https://www.humansecurity.com https://humancms.wpenginepowered.com https://humanstg.wpenginepowered.com https://humancmsstg.wpenginepowered.com https://human-headless-frontend-theta.vercel.app https://humanprod.wpenginepowered.com https://stg.humansecurity.com http://localhost:3000 https://humansecapi.wpengine.com data:;
base-uri
Keyword
—
'none'
font-src
Keyword
—
'self'
font-src
Scheme
—
https:
font-src
Scheme
—
data:
form-action
Keyword
—
'self'
frame-ancestors
Keyword
—
'self'
img-src
Scheme
—
blob:
img-src
Keyword
—
'self'
img-src
Host
—
img-src
Scheme
—
data:
object-src
Host
—
object-src
Scheme
—
data:
script-src-attr
Keyword
—
'unsafe-inline'
style-src
Keyword
—
'self'
style-src
Scheme
—
https:
style-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'self'
script-src
Scheme
—
blob:
script-src
Keyword
—
'unsafe-inline'
script-src
Keyword
—
'unsafe-eval'
script-src
Host
—
script-src
Host
—
upgrade-insecure-requests
Source
—
(no sources)
frame-src
Keyword
—
'self'
frame-src
Host
—
frame-src
Scheme
—
data:
media-src
Keyword
—
'self'
media-src
Scheme
—
blob:
media-src
Host
—
media-src
Scheme
—
data:
Content-Security-Policy-Report-Only
No report-only CSP headers found.