9 directives

Content-Security-Policy

default-src Keyword
'self'
style-src Keyword
'self'
style-src Keyword
'unsafe-inline'
style-src Keyword
'unsafe-inline'
font-src Keyword
'self'
script-src Keyword
'self'
script-src Keyword
'strict-dynamic'
script-src Keyword
'unsafe-inline'
script-src Nonce
'nonce-HXecVNk4ItKM0+VbCVa4lQ=='
script-src Nonce
'nonce-SONRuM5yNt8jmeKk2l/kNg=='
script-src Nonce
'nonce-LqN8Gga+iLxwxuL3VZ+cRQ=='
script-src Nonce
'nonce-JRYwDr9h0bglei5f1iqdjQ=='
script-src Nonce
'nonce-6h4m/AwtXmmIf8lYZPsuTg=='
script-src Nonce
'nonce-RLerhoQtHGGcTZwNl1hMVQ=='
script-src Nonce
'nonce-coRt1Ar+E9ICF9PzsPTA5A=='
script-src Nonce
'nonce-h5dmP3E93fkq5Xa1UfIfxQ=='
script-src Nonce
'nonce-xeanBmMoMi7giGK2JRl7Tw=='
script-src Nonce
'nonce-p5je47zNkNyC2qaCSGMEjw=='
script-src-attr Source
(no sources)
img-src Keyword
'self'
img-src Scheme
data:
img-src Scheme
data:
frame-src Keyword
'self'
connect-src Keyword
'self'
base-uri Keyword
'none'

Content-Security-Policy-Report-Only

No report-only CSP headers found.