Open
Cached
·
just now
15
directives
Content-Security-Policy
Content-Security-Policy: connect-src *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk trace-proxy.mam.dev https://*.captchafox.com s.uicdn.com;frame-ancestors *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk;frame-src 'self' s.uicdn.com *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk;script-src 'self' 'unsafe-inline' s.uicdn.com *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk uim.tifbs.net www.googletagmanager.com https://*.captchafox.com blob:;default-src 'self';base-uri 'self';font-src 'self' img.ui-portal.de;form-action 'self' *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk com.gmx.androidmail.redirect://* com.unitedinternet.mmc.mobile.gmx.iosmailer.redirect://*;img-src 'self' *.gmx.com *.gmx.fr *.gmx.es *.gmx.co.uk s.uicdn.com https://*.captchafox.com data:;object-src 'none';script-src-attr 'none';style-src 'self' 'unsafe-inline' https://*.captchafox.com s.uicdn.com;worker-src blob:;media-src https://*.captchafox.com;upgrade-insecure-requests;
frame-src
Keyword
—
'self'
script-src
Keyword
—
'self'
script-src
Keyword
—
'unsafe-inline'
script-src
Scheme
—
blob:
default-src
Keyword
—
'self'
base-uri
Keyword
—
'self'
font-src
Keyword
—
'self'
form-action
Keyword
—
'self'
form-action
Host
—
com.gmx.androidmail.redirect://*
form-action
Host
—
com.unitedinternet.mmc.mobile.gmx.iosmailer.redirect://*
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
object-src
Keyword
—
'none'
script-src-attr
Keyword
—
'none'
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
worker-src
Scheme
—
blob:
upgrade-insecure-requests
Source
—
(no sources)
Content-Security-Policy-Report-Only
No report-only CSP headers found.