Cached · just now
13 directives

Content-Security-Policy

default-src Keyword
'self'
base-uri Keyword
'self'
object-src Keyword
'none'
frame-ancestors Keyword
'none'
form-action Keyword
'self'
script-src Keyword
'self'
script-src Hash
'sha256-7yUCP0HSZBz35GIueMt05J7DTiDH17iDE1jbz1H3GFA='
script-src Hash
'sha256-BDoR6JdXWYkidyAuHmjinjVI6FqPVeMx5FmB6wYsmdw='
script-src Hash
'sha256-BF0290pkb3jxQsE7z00xR8Imp8X34FLC88L0lkMnrGw='
script-src Hash
'sha256-Q2BPg90ZMplYY+FSdApNErhpWafg2hcRRbndmvxuL/Q='
script-src Hash
'sha256-QzWFZi+FLIx23tnm9SBU4aEgx4x8DsuASP07mfqol/c='
script-src Hash
'sha256-Ya0pUYrC7nM5Cn/056TyVuEiz6dFGrzmkWzgON0pF0U='
script-src Hash
'sha256-cZWcZiIyS4StqrkR6HMcPhEuBUubhPWoGI9/z5v8m28='
script-src Hash
'sha256-xT6kcJuuAhssYDbbfk/f7vtTbO1zznil4ajySQOF7lA='
style-src Keyword
'self'
style-src-attr Keyword
'unsafe-inline'
img-src Keyword
'self'
img-src Scheme
data:
img-src Scheme
https:
font-src Keyword
'self'
font-src Scheme
data:
connect-src Keyword
'self'
manifest-src Keyword
'self'
upgrade-insecure-requests Source
(no sources)

Content-Security-Policy-Report-Only

No report-only CSP headers found.