Open
Cached
·
just now
11
directives
Content-Security-Policy
Content-Security-Policy: frame-ancestors 'self' https://app.optimizely.com https://*.optimizely.com;
frame-ancestors
Keyword
—
'self'
Content-Security-Policy-Report-Only
Content-Security-Policy-Report-Only: connect-src 'self' https://analytics.tiktok.com https://api.hubspot.com https://app.clearbit.com https://cdn.cookielaw.org https://cdn.dreamdata.cloud https://content.hotjar.io https://cta-service-cms2.hubspot.com https://forms.hsforms.com https://px.ads.linkedin.com https://script.crazyegg.com https://www.google-analytics.com https://www.google.com https://edge.api.brightcove.com https://bat.bing.com/ https://manifest.prod.boltdns.net https://sdl.brightcovecdn.com https://logx.optimizely.com https://*.optimizely.com; default-src 'self'; font-src 'self' data: https://use.typekit.net https://*.optimizely.com; frame-ancestors 'none'; frame-src https://www.googletagmanager.com https://googleads.g.doubleclick.net https://cm.g.doubleclick.net https://www.facebook.com https://calendly.com https://forms.hsforms.com https://a5098497884553216.cdn.optimizely.com https://a5098497884553216.cdn-pci.optimizely.com; img-src 'self' data: https://bat.bing.com https://forms-na1.hsforms.com https://ib.adnxs.com https://perf-na1.hsforms.com https://px.ads.linkedin.com https://secure.adnxs.com https://track.accountinsight.cloud https://track.hubspot.com https://www.facebook.com https://www.google.com https://www.google.com.ua https://metrics.brightcove.com https://www.googletagmanager.com https://cf-images.us-east-1.prod.boltdns.net https://cdn.optimizely.com https://app.optimizely.com; media-src 'self' blob:; script-src 'self' 'nonce-mXCc2yTUA4rOtN4Jvp/7cA==' https://a.dpmsrv.com https://analytics.tiktok.com https://bat.bing.com https://cdn.cookielaw.org https://cdn.dreamdata.cloud https://cm.g.doubleclick.net https://connect.facebook.net https://googleads.g.doubleclick.net https://ib.adnxs.com https://js.hs-analytics.net https://js.hs-banner.com https://js.hs-scripts.com https://js.hsforms.net https://js.hubspot.com https://js.usemessages.com https://s.dpmsrv.com https://script.crazyegg.com https://script.hotjar.com https://serve.nrich.ai https://snap.licdn.com https://st.getsitecontrol.com https://static.hotjar.com https://tag.clearbitscripts.com https://widgets.getsitecontrol.com https://www.googletagmanager.com https://x.clearbitjs.com https://assets.calendly.com https://static.hsappstatic.net https://48752163.fs1.hubspotusercontent-na1.net https://cdnjs.cloudflare.com https://players.brightcove.net wss://ws.hotjar.com/ https://*.optimizely.com https://optimizely.s3.amazonaws.com https://cdn-assets-prod.s3.amazonaws.com 'unsafe-eval'; style-src 'self' 'unsafe-inline' https://*.typekit.net https://assets.calendly.com https://*.optimizely.com https://app.optimizely.com; worker-src 'self' blob:;
connect-src
Keyword
—
'self'
default-src
Keyword
—
'self'
font-src
Keyword
—
'self'
font-src
Scheme
—
data:
frame-ancestors
Keyword
—
'none'
img-src
Keyword
—
'self'
img-src
Scheme
—
data:
media-src
Keyword
—
'self'
media-src
Scheme
—
blob:
script-src
Keyword
—
'self'
script-src
Nonce
—
'nonce-mXCc2yTUA4rOtN4Jvp/7cA=='
script-src
Keyword
—
'unsafe-eval'
style-src
Keyword
—
'self'
style-src
Keyword
—
'unsafe-inline'
worker-src
Keyword
—
'self'
worker-src
Scheme
—
blob: