Open
Cached
·
just now
6
directives
Content-Security-Policy
Content-Security-Policy: default-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://*.website-files.com https://*.prod.website-files.com https://uploads-ssl.webflow.com https://webflow.com https://*.survicate.com https://*.survicate-cdn.com https://*.intercom.io wss://*.intercom.io https://*.intercom-messenger.com wss://*.intercom-messenger.com https://*.intercomcdn.com https://static.intercomassets.com https://*.cookiebot.com https://www.googletagmanager.com https://d3e54v103j8qbb.cloudfront.net https://*.google-analytics.com https://*.googlesyndication.com https://*.analytics.google.com https://*.google.com www.googleadservices.com https://*.g.doubleclick.net https://td.doubleclick.net https://assets.calendly.com https://calendly.com https://tracking.g2crowd.com https://*.g2.com https://cdn.mxpnl.com https://api-js.mixpanel.com https://snap.licdn.com https://px.ads.linkedin.com https://www.linkedin.com/ https://js.hs-scripts.com https://js.hsleadflows.net https://js.hs-analytics.net https://js.hs-banner.com *.hsforms.net *.hsforms.com https://forms.hubspot.com https://*.hsappstatic.net https://meetings.hubspot.com https://js.partnerstack.com partnerlinks.io https://grsm.io *.sharethis.com ipapi.co https://www.youtube-nocookie.com https://www.youtube.com https://cdn.jsdelivr.net https://cdnjs.cloudflare.com https://*.googleapis.com https://fonts.gstatic.com https://bcp.crwdcntrl.net https://survicate.traffit.com https://cdn.embedly.com/ https://*.demio.com https://tube.rvere.com https://*.storylane.io https://*.getcontrast.io https://sc.lfeeder.com https://jscloud.net https://*.ahrefs.com; media-src https: data:; img-src https: data:; worker-src 'self' blob:; frame-ancestors 'none'; report-to csp-endpoint-landing;
default-src
Keyword
—
'self'
default-src
Scheme
—
data:
default-src
Keyword
—
'unsafe-inline'
default-src
Keyword
—
'unsafe-eval'
media-src
Scheme
—
https:
media-src
Scheme
—
data:
img-src
Scheme
—
https:
img-src
Scheme
—
data:
worker-src
Keyword
—
'self'
worker-src
Scheme
—
blob:
frame-ancestors
Keyword
—
'none'
report-to
Host
—
Content-Security-Policy-Report-Only
No report-only CSP headers found.