Open
Cached
·
just now
10
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self' streamyard.com *.streamyard.com; media-src 'self' blob: *.akamaihd.net *.ctfassets.net streamyard.com *.streamyard.com *.zdassets.com storage.googleapis.com js.driftt.com *.global.ssl.fastly.net res.cloudinary.com https://*.mux.com; script-src 'self' bat.bing.com blob: cdnjs.cloudflare.com cdn.firstpromoter.com *.googletagmanager.com *.google-analytics.com *.googleadservices.com *.facebook.com *.facebook.net *.twitter.com *.ads-twitter.com *.licdn.com *.profitwell.com *.zopim.com *.zdassets.com *.stripe.com *.customer.io *.sentry.io streamyard.com *.streamyard.com js.driftt.com *.sentry-cdn.com *.chilipiper.com apis.google.com *.vectorly.io cdn.announcekit.app *.newrelic.com *.nr-data.net https://edge.fullstory.com https://rs.fullstory.com cdn.cookielaw.org *.onetrust.com s.pinimg.com ct.pinterest.com *.youtube.com *.youtube-nocookie.com https://www.instagram.com/embed.js https://cdn.sprig.com accounts.google.com https://t.cometlytrack.com https://cdn.bitmovin.com *.mountain.com 'unsafe-eval' 'nonce-ro6oA75V4ZyXvPeAGTFfqw=='; connect-src 'self' bat.bing.com *.google.com *.google-analytics.com fonts.gstatic.com api.amplitude.com *.doubleclick.net *.zdassets.com *.typeform.com *.litix.io *.firstpromoter.com *.profitwell.com *.profitwell-events.com wss://*.streamyard.com wss://streamyard.com wss://*.pusher.com *.pusher.com streamyard.com *.streamyard.com streamyard.zendesk.com *.customer.io *.sentry.io *.chilipiper.com *.zopim.com wss://*.zopim.com storage.googleapis.com res.cloudinary.com *.checkstep.com *.hopin.com hopin.com wss://chat.stream-io-api.com https://chat.stream-io-api.com *.newrelic.com *.nr-data.net *.bitmovin.com https://edge.fullstory.com https://rs.fullstory.com cdn.cookielaw.org *.onetrust.com https://t.cometlytrack.com *.vectorly.io https://unpkg.com/[email protected]/ https://unpkg.com/[email protected]/ https://unpkg.com/[email protected]/ https://unpkg.com/[email protected]/ https://unpkg.com/[email protected]/ https://unpkg.com/[email protected]/ data: snap.licdn.com px.ads.linkedin.com px4.ads.linkedin.com p.adsymptotic.com cdn.linkedin.oribi.io gw.linkedin.oribi.io dc.ads.linkedin.com sjs.bizographics.com *.global.ssl.fastly.net https://api.sprig.com https://cdn.sprig.com https://*.mux.com https://cdn.userleap.com accounts.google.com *.fbsbx.com *.fbcdn.net *.licdn.com *.ggpht.com *.googleusercontent.com 44.238.122.172 100.20.58.101 35.85.84.151 44.228.85.26 34.215.155.61 35.160.46.251 52.71.121.170 18.210.229.244 44.212.189.233 3.212.39.155 52.22.50.55 54.156.2.105 https://api.pico.bendingspoonsapps.com https://spidersense.bendingspoons.com https://api.picox.bendingspoons.com; img-src data: blob: * streamyard.com *.streamyard.com https://rs.fullstory.com https://*.mux.com; style-src 'self' fonts.googleapis.com js.chilipiper.com accounts.google.com streamyard.com *.streamyard.com 'unsafe-inline'; font-src 'self' data: fonts.gstatic.com fonts.googleapis.com streamyard.com *.streamyard.com https://storage.googleapis.com/streamyard-app/ https://storage.googleapis.com/streamyard-dev-app/ https://storage.googleapis.com/streamyard-staging-app/; frame-src 'self' docs.google.com *.doubleclick.net *.googlesyndication.com *.facebook.com *.stripe.com *.chilipiper.com *.typeform.com js.driftt.com *.youtube.com *.youtube-nocookie.com cdn.cookielaw.org *.onetrust.com *.instagram.com accounts.google.com streamable.com streamyard.com *.streamyard.com; worker-src 'self' streamyard.com *.streamyard.com blob: data:; frame-ancestors 'self'
default-src
Keyword
—
'self'
media-src
Keyword
—
'self'
media-src
Scheme
—
blob:
media-src
Host
—
script-src
Keyword
—
'self'
script-src
Scheme
—
blob:
script-src
Host
—
script-src
Host
—
script-src
Keyword
—
'unsafe-eval'
script-src
Nonce
—
'nonce-ro6oA75V4ZyXvPeAGTFfqw=='
connect-src
Keyword
—
'self'
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Scheme
—
data:
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
connect-src
Host
—
img-src
Scheme
—
data:
img-src
Scheme
—
blob:
img-src
Host
—
*
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
frame-src
Keyword
—
'self'
worker-src
Keyword
—
'self'
worker-src
Scheme
—
blob:
worker-src
Scheme
—
data:
frame-ancestors
Keyword
—
'self'
Content-Security-Policy-Report-Only
No report-only CSP headers found.